Comment on Password manager by Amazon
Serinus@lemmy.world 22 hours agoBitwarden will only autofill if the domain matches.
Comment on Password manager by Amazon
Serinus@lemmy.world 22 hours agoBitwarden will only autofill if the domain matches.
gaylord_fartmaster@lemmy.world 21 hours ago
Right, “maliciously sneak”, as in they’ve either gained access to make changes to the site ditectly, or they’ve found a way to inject their scripts to steal creds.
Serinus@lemmy.world 21 hours ago
And how is that any different from not having a password manager?
gaylord_fartmaster@lemmy.world 21 hours ago
I guess you didn’t read most of the comment.
Cocodapuf@lemmy.world 12 hours ago
No, be did, here’s where the confusion is.
Serinus is asking if the site in question needs to be compromised. In other words, can the attacker compromise a random site to fool your password manager into entering credentials for Gmail.com, or does the attacker have to compromise Gmail.com to do that?
Because those two attacks are very different levels of complexity.
And frankly, if someone compromises the site you’re actually trying to visit, there’s simply no defense against that at all.