Security News > 2023 > February > S3 Ep121: Can you get hacked and then prosecuted for it? [Audio + Text]

S3 Ep121: Can you get hacked and then prosecuted for it? [Audio + Text]
2023-02-09 19:41

Exactly the same when you try and use a password you say, "I want to copy that password and use it."

You have to put in a master password to get access to your passwords, but you don't have to put in the master password to get access to the configuration file to get access to the passwords.

The presence of any vulnerability allows an attacker to jackpot every password on the system, regardless of those passwords' notional strength.

Which is what a lot of people do if they aren't using a password manager and instead of being a *potential* single point of failure, that creates something that is exactly, absolutely *and already* a single point of failure.

DUCK. That's a great point, Doug, and I think it kind of illustrates that there is, if you like, a burning question-behind-the-question, which is, "Why do we need so many passwords in the first place?".

DOUG. [GLUM LAUGH] As we discussed, I was affected by the LastPass breach, and I looked at my giant list of passwords and said, "Oh, my God, I've got to go change all these passwords!".


News URL

https://nakedsecurity.sophos.com/2023/02/09/s3-ep121-can-you-get-hacked-and-then-prosecuted-for-it-audio-text/