logoalt Hacker News

akimbostrawmantoday at 6:38 AM2 repliesview on HN

Browser password manager extensions are like putting a dog door on your reinforced vault door. Giant increase in attack surface.


Replies

neobraintoday at 11:17 AM

Quite the contrary, actually: not using a browser extension makes you much more susceptible to phishing attacks, since your password manager won't be able to protect you from copy-pasting credentials into an imposter website.

Capricorn2481today at 3:35 PM

Well we're in a thread about the CLI being compromised. I've never heard of a sandboxed browser extension being compromised.