You are viewing a single comment's thread from:

RE: A new start for SteemConnect

in #steemconnect5 years ago

Is a proof by example good enough? Utopian, about 1 year ago. Pictures of flowers everywhere?

Nobody hacked DTube or posting keys. Why? Because I dont store keys or 'tokens' that replace them in a centralized db, its literally staying in your PC and cant get massively hacked ever.

Sort:  

DTube store keys in localStorage, if someone hack DTube server he can modify the code to retreive users keys. When Utopian was hacked, the hacker only got some expirable token, users keys never been exposed.

Many sites are using offline tokens, if they get hacked, the users are screwed equally like putting the private key directly into. But the hacker doesn't even need to get it from the localStorage but take it directly from the database of the server. And its not really easy to prevent phishing here either.

Why not making a solution like steem keychain for all browsers? =)

Yeah did everyone forget utopian-io and the compromised keys via steemconnect? I guess so. Amnesia?