Nemeski to Privacy Guides@lemmy.oneEnglish • 1 year agoSignal under fire for storing encryption keys in plaintextstackdiary.comexternal-linkmessage-square39fedilinkarrow-up1213arrow-down10cross-posted to: cybersecurity@sh.itjust.worksprivacy@lemmy.worldfoss@beehaw.orgprivacy@lemmy.ca
arrow-up1213arrow-down1external-linkSignal under fire for storing encryption keys in plaintextstackdiary.comNemeski to Privacy Guides@lemmy.oneEnglish • 1 year agomessage-square39fedilinkcross-posted to: cybersecurity@sh.itjust.worksprivacy@lemmy.worldfoss@beehaw.orgprivacy@lemmy.ca
minus-square@kakito69@sh.itjust.workslinkfedilinkEnglish31•1 year agoNot storing it in plaintext would require setting up some kind of password, right?
minus-squareboredsquirrellinkfedilinkEnglish15•edit-21 year agoSome way to encrypt the decryption key. This could also mean TPM + Pin. Or using a Nitrokey, externally, which stores the password to decrypt the decryption key. That is how user account unlocking (on GrapheneOS with Pixel phones) is done.
Not storing it in plaintext would require setting up some kind of password, right?
Some way to encrypt the decryption key.
This could also mean TPM + Pin. Or using a Nitrokey, externally, which stores the password to decrypt the decryption key.
That is how user account unlocking (on GrapheneOS with Pixel phones) is done.