You are viewing a single comment's thread from:

RE: TIL - That Despite You Best Efforts Your Passwords are Stored in Plaintext!

in #life9 years ago

Excuse my ignorance, but I go to the chrome://settings/passwords link and I see the list of websites/passwords ... but the passwords are not in plain text as you mention. Am I missing a step or are there other settings which keep this encrypted perhaps?

Sort:  

They are in plaintext. You need to go over the little dots that obscure it and click them, then click on "show".
This isn't really the dangerous part though, the browser does need to save off the plain text somewhere so it can log you into sites. However having the browser save them in the first place bad because...

The dangerous part is that they are saved out to your harddrive without encryption and also in your google account unencrypted, and evidently the google account of anyone who "logs into chrome" from your browser if you don't log into chrome yourself, according to that link.