Malwareaware

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Thursday, 8 August 2013

Why you should not let Google Chrome store your passwords.

Posted on 06:28 by Unknown
Nowadays, most modern web browsers offer a feature that will allow you to store your passwords in the browser. While this is useful in some cases, this can spell disaster.

For example, if you loan your computer out, the passwords stored in the browser will automatically be filled in by the web browser. This gives the person you loaned it out to access to do all kinds of things. The most mundane of which is to log into your social media accounts and proclaim "your" undying love for Justin Bieber... or something of that nature.

The worst they can do is as follows:

1. Harvest those passwords and save them for later use.

2. Send out derogatory emails that you would never send.

3. Log into your bank account and get your credit card info which can then be used to purchase contraband on the internet. Or just rack up big charges witch you will have a not so easy time refuting.

Among other things...

But this type of damage can not only be done by someone who you have given the computer to. In the case of Google Chrome in particular, which according to many stat counting websites is the most popular browser, someone who has access to the computer for even a minute can steal your passwords.

How it works in this case is something that anyone can remember. And if you are using Chrome, you can try this as well.

Step #1: Go to chrome://settings/passwords

Step #2: Go to a random set of asterisks you see.

Step #3: Click the show button.

Surprised? This is the local copy of your saved passwords cache. And anyone who can remember that settings page can access it. And it is not just passwords, It's also the web address and username.

Anyone who can lure you away from your computer for a few minutes can get all the info they need to make your day go from not bad to a living hell.

The more interesting thing is that this is not a bug, it is a feature.

Now, what can we do about it?

Option #1: Don't save passwords at all, rely on your memory. Even my memory is not great, but remembering several different passwords which are likely long strings of characters should not be an issue, right?

Option #2: Put passwords on Post-Its and place them on your computer monitor. Yes, now only anyone with a pair of cheap binoculars can see them. This is much much safer, right?

Option #3: Install a password keeper that is independent of Google Chrome. This is a viable possibility as long as the password keeper encrypts your passwords until you decrypt with a master password which you have memorized. Mozilla Firefox also offers a feature similar to this if you do not want to install more software.

Thank You for reading. I hope you think of this post whenever you see that pop up from Google Chrome offering to save that password for you. If not for security's sake, do it to make snooping from the NSA a bit harder.
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • How to remove System Doctor 2014
    There is a new rogue AV making the rounds on the web called System Doctor 2014. For those that have just started reading my blog or for thos...
  • What are Bitcoin Miners?
    For my first post about Bitcoins, and for what I wish to be my last about the subject, we are going to be talking about what Bitcoin miners ...
  • How to keep spies from monitoring you through your computer or your phone.
    Those of you in The United States of America have most likely heard about that whole IRS scandal and the accompanying scandals of wiretappin...
  • Spotlight on Malware: The Gruel Worm.
    It's been around since Windows 2000, but there still is not a way to remove this worm without formatting the hard drive. I speak of the ...
  • I am going to be a billionaire!
    For those of you that have been reading my blog for some time, you know I like to mess with scammers, fake tech support and the like. But th...
  • Use VBScript to pull a joke on your friends.
    Do you want to play a trick on your friends, family, or coworkers? Well this one's for you. You can make a fake piece of malware on your...
  • Spotlight on Malware: MyDoom
    The MyDoom Windows worm, also known as Novarg, and Shimgapi will be the subject of our focus for this post. The MyDoom worm was first discov...
  • CryptoLocker as of 11/3/2013
    If you have read my other posts on this, you know. But for those of you who do not, there is a piece of ransomware that has been making the ...
  • The Big Game: Who's on our side?
    I recently helped a friend of mine remove malware from their computer when she be one mused on how lonely my job must be. "It must be s...
  • Java: No more coffee for you.
    Odds are that every blogger that has a tight focus on computer security has authored a blog post about Java. So why am I wasting your time? ...

Categories

  • Android
  • History Of
  • iOS
  • Java
  • Macs
  • Passwords
  • Removal Guides
  • Spotlight On Malware
  • The CryptoLocker Saga
  • What Does It Mean?
  • What's in a name?
  • Windows

Blog Archive

  • ▼  2013 (151)
    • ►  November (10)
    • ►  October (5)
    • ►  September (15)
    • ▼  August (22)
      • How to remove the Homeland Security Ransomware.
      • How to Remove Antivirus Defence (Rogue)
      • How to Remove Titan Antivirus 2013 (Rogue)
      • History of Windows: Windows 3.0.
      • Looking for Love.
      • How to remove Antivirus Security Pro. (Rogue)
      • How to remove the Savepath Deals Adware
      • History of Windows: Windows 2.0
      • How to remove 24x7 Help.
      • How to remove the Guardians of the Peace of Irelan...
      • How to remove My Safe PC 2014 (Rogue)
      • History of Windows: Windows 1.0
      • How to remove the Webcake Deals Adware.
      • How to remove Antiviral Factory 2013 (Rogue)
      • How to make someone think they have malware: Batch...
      • How to Remove PC Defender 360 (Rogue)
      • Google Glass: Another device, another vector for i...
      • What are Bitcoin Miners?
      • Why you should not let Google Chrome store your pa...
      • What is Rogue Antivirus Software?
      • How to remove Live Security Professional. (Rogue)
      • Never leave your computer's date on February the 14th
    • ►  July (26)
    • ►  June (17)
    • ►  May (25)
    • ►  April (15)
    • ►  March (7)
    • ►  February (6)
    • ►  January (3)
Powered by Blogger.

About Me

Unknown
View my complete profile