Hacker News new | past | comments | ask | show | jobs | submit login

Criticisms from this article:

>Bitwarden does not warn about this risk…… Bitwarden takes little effort in communicating the risks of choosing a short low-entropy PIN. Currently there is very little information to be found about the PIN in Bitwarden documentation

Bitwarden's help docs on using PINs: https://bitwarden.com/help/unlock-with-pin/.

>Warning: Using a PIN can weaken the level of encryption that protects your application's local vault database. If you are worried about attack vectors that involve your device's local data being compromised, you may want to reconsider the convenience of using a PIN.




They just need to put that notice in the software, when you try to enable a pin.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: