2) no easy to install, secure password manager. Installing and configuring 1password typically takes over an hour
-
Show this thread
-
if you work in security and want to help the world, find a way to fix attachments and bake password management into a secure OS
4 replies 11 retweets 41 likesShow this thread -
-
-
Replying to @Pinboard @fivetonsflax
Both have “Keychain” built in. I don’t use it much because Linux, but I’ve heard good things. It can sync with iCloud. It may not work (well) with browsers other than Safari.
1 reply 0 retweets 0 likes -
Replying to @diwesser @fivetonsflax
it’s not connected in any useful way to Chrome, and Safari is not a safe browser
2 replies 0 retweets 3 likes -
Replying to @Pinboard @fivetonsflax
Fair enough. By not safe do you mean not sandboxed?
2 replies 0 retweets 0 likes -
Safari is certainly sandboxed (all major browsers are). Its sandbox exposes more than Chrome’s does—particularly GPU—but both are strong.
1 reply 0 retweets 1 like -
Note that, as far as political campaigns are concerned, compromising *any* renderer process is game over, so sandboxing is very limited.
1 reply 0 retweets 0 likes -
Could you expand on that? I’m not sure what you mean by “exposing any rendering process is game over.”
2 replies 0 retweets 0 likes
If Mallory compromises any rendering process, then he has access to your Gmail, Facebook, etc… every Web app you use.
-
-
Ah, got it. Thanks.
0 replies 0 retweets 0 likesThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.