Hacker News new | ask | show | jobs
by tptacek 4695 days ago
Here are other opportunities Chrome has missed:

* An FBI warning, like they have on DVDs, explaining the penalties for stealing user passwords.

* Automatically generate word-search puzzles like on the backs of chain restaurant kids menus, so that 5 year olds will have a harder time recovering passwords.

* Since most of the "attackers" the master password would block are probably senior citizens, typeset the passwords in a 7 point font.

* Since all of the "attackers" who would be thwarted by a Chrome master password are computer illiterate, make users answer a basic computer literacy quiz before showing them the password. You should have to be able to explain the difference between a library function and a system call when you push the "reveal password" button.

Note to The Guardian: I have at least 10 more similar "major security flaws" in Chrome (I gave up some more, like the red-green colorblind attacker countermeasure, on Twitter --- but I assure you I have 10 more) that I'm willing to disclose to you, and I assure you that you'll be able to find someone else on the Internet to give you quotes for your article about how terrible it is that Chrome has those flaws.