Hacker News new | ask | show | jobs
by busterarm 3095 days ago
Seems folks forget just how poor of a job they were doing only a year ago.

SIK-2016-038: Subdomain Password Leakage in 1Password Internal Browser SIK-2016-039: Https downgrade to http URL by default in 1Password Internal Browser SIK-2016-040: Titles and URLs Not Encrypted in 1Password Database SIK-2016-041: Read Private Data From App Folder in 1Password Manager SIK-2016-042: Privacy Issue, Information Leaked to Vendor 1Password Manager

The tradition with this company is not a serious (as in mission-critical serious) approach to security and the amount of FUD that they spread anytime they take real criticism from the community speaks volumes. They had more vulnerabilities disclosed last year than any of their competitors.

Just because you like it doesn't mean that it's secure software.

1 comments

Wasn’t aware of these, but just solidifies my move away from 1PW.