Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Why do you assume every KeePass user is storing their passwords on a server somewhere? I would never send my password file over a network, and I don't consider USB storage "sharing."


The password file itself is an encrypted DB. Unless you choose a weak password for that, it's pretty secure.


The more tightly you control copies of your password DB file, the less vulnerable you are if somebody "purposefully injected a vulnerability" in the software as parent suggests, that's the only reason I brought it up.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: