Hacker News new | ask | show | jobs
by tomtoise 3229 days ago
Ah. Thanks. So the idea is to stop the user before they get that far, I suppose.

Doesn't this hark back to "If the attacker has local access, it's already game over"?

2 comments

Not really, the databases are designed to be effectively public information. The security comes from the encryption, not OS-level file permission controls!
Has local access plus has a weak master password.