Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

To me this makes so much sense. A file, the name of which only I know, encrypted on my local disk. Cut and paste from vim. No easy target. (Obscurity IS a security feature of certain system elements. But NOT encryption algorithms, obviously). Every hacker and his brother is pounding away at the on-line password systems. My one-off system on my personal laptop ... not a juicy target.


Your system might be secure. But, given that the vast majority of websites these days seem to require some kind of login in order to interact with them in any way, using a system like yours would drive me mad and waste so much time I'd likely end up adopting really bad practices like using memorable or repeat passwords. Just so I could speed things up a bit by being able to remember some of them, without having to decrypt and open up a text file to copy/paste login info, every time.

Which would, of course, be LESS secure than using a password manager.


It’s not bad, but it’s missing a bunch of features. Auto locking after 30 seconds, clipboard clearing after 30 seconds, TOTP/HOTP interpretation just off the top of my head. May not be a problem if you’re using QubesOS, but it’s way too risky to accidentally keep an important password in your clipboard for too long.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: