Hacker News new | ask | show | jobs
by halJordan 1271 days ago
Chrome uses the host OS's cryptographic apis (ie dpapi on Windows). Which in turn relies usually on the user's pin/password.
1 comments

This is the main reason to avoid browser based password managers, just plugin a usb with portable firefox and 'import' the passwords into firefox, nothing will try to stop this

If the user is logged into the PC, everything is available to extract, nothing is really preventing any extraction besides the windows user account