{"id":386889,"date":"2021-12-28T23:03:45","date_gmt":"2021-12-28T20:03:45","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/heres-why-storing-passwords-in-your-browser-is-a-bad-idea-review-geek\/"},"modified":"2021-12-28T23:03:45","modified_gmt":"2021-12-28T20:03:45","slug":"heres-why-storing-passwords-in-your-browser-is-a-bad-idea-review-geek","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/heres-why-storing-passwords-in-your-browser-is-a-bad-idea-review-geek\/","title":{"rendered":"#Here\u2019s Why Storing Passwords In Your Browser Is a Bad Idea \u2013 Review Geek"},"content":{"rendered":"<p><strong>&#8220;#Here\u2019s Why Storing Passwords In Your Browser Is a Bad Idea \u2013 Review Geek&#8221;<\/strong><\/p>\n<div id=\"article-content-area\">\n<figure style=\"width: 1920px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"type:primaryImage size-full wp-image-106504\" data-pagespeed-lazy-srcset=\"https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/12\/8266e4bf-1.png?width=400 400w, https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/12\/8266e4bf-1.png?width=1200 1200w\" sizes=\"auto, 400w, 1200w\" data-pagespeed-lazy-src=\"https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/12\/8266e4bf-1.png?width=1200\" alt=\"Google Chrome's password manager.\" width=\"1920\" height=\"1080\" src=\"\/pagespeed_static\/1.JiBnMqyl6S.gif\" onload=\"pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\" onerror=\"this.onerror=null;pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\"\/><figcaption class=\"wp-caption-text\"><span class=\"type:primaryImage imagecredit\">Google<\/span><\/figcaption><\/figure>\n<p>We often warn that browser-based password managers lack the security and features of dedicated password software. But still, they\u2019re better than nothing, right? A new report from <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/asec.ahnlab.com\/en\/29885\/\">AhnLab ASEC<\/a> proves the opposite\u2014storing passwords in your browser leaves you incredibly vulnerable to hackers, even if you use unique passwords for each of your accounts.<\/p>\n<p>While investigating a recent data breach, researchers at AhnLab ASEC found that hackers stole company login information from a remote worker\u2019s browser. The hackers used a common malware <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/resources.infosecinstitute.com\/topic\/redline-stealer-malware-full-analysis\/\">called RedLine<\/a>, which costs between $150 and $200, to retrieve this login information. Antivirus software did not detect the malware, which was probably distributed through a phishing email.<\/p>\n<figure style=\"width: 1920px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-106505 size-full\" data-pagespeed-lazy-src=\"https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/12\/f19c9085-1.png\" alt=\"An example of login credentials stored in a browser's login table.\" width=\"1920\" height=\"372\" data-crediturl=\"https:\/\/asec.ahnlab.com\/en\/29885\/\" data-credittext=\"ASEC\" src=\"\/pagespeed_static\/1.JiBnMqyl6S.gif\" onload=\"pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\" onerror=\"this.onerror=null;pagespeed.lazyLoadImages.loadIfVisibleAndMaybeBeacon(this);\"\/><figcaption class=\"wp-caption-text\">A browser\u2019s login table, which stores credentials and login attempts. <span class=\"imagecredit\"><a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/asec.ahnlab.com\/en\/29885\/\">ASEC<\/a><\/span><\/figcaption><\/figure>\n<p>Browsers like Chrome and Edge have password management tools enabled by default, and they keep track of all login attempts with pertinent information like date and time, the website URL, and whatever username or password you used. RedLine can access and interpret this data, which hackers may use or sell to bad actors.<\/p>\n<p>To avoid this vulnerability, you need to completely disable your browser\u2019s built-in password management tools. Telling your browser not to remember login data for a certain site isn\u2019t enough\u2014your browser will still log the site\u2019s URL, which hackers can use to try and brute-force their way into your account without login credentials. (This data is more valuable if you\u2019re signing into a work account, which may require logins through a VPN or firewall.)<\/p>\n<p>We strongly suggest disabling your browser\u2019s built-in password manager and using dedicated software. There are a ton of great free and paid options out there, and you can easily export your <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.howtogeek.com\/715223\/how-to-export-and-delete-saved-passwords-in-chrome\/\">Chrome<\/a>, <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.howtogeek.com\/715279\/how-to-export-and-delete-saved-passwords-in-microsoft-edge\/\">Edge<\/a>, or <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.howtogeek.com\/715250\/how-to-export-and-delete-saved-passwords-in-firefox\/\">Firefox<\/a> passwords to a dedicated password manager.<\/p>\n<p><small>Source: <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/asec.ahnlab.com\/en\/29885\/\">AhnLab ASEC<\/a>\u00a0 via <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/redline-malware-shows-why-passwords-shouldnt-be-saved-in-browsers\/\">Bleeping Computer<\/a><\/small>\n<\/div>\n<p><script>\nsetTimeout(function(){\n  !function(f,b,e,v,n,t,s)\n  {if(f.fbq)return;n=f.fbq=function(){n.callMethod?\n  n.callMethod.apply(n,arguments):n.queue.push(arguments)};\n  if(!f._fbq)f._fbq=n;n.push=n;n.loaded=!0;n.version='2.0';\n  n.queue=[];t=b.createElement(e);t.async=!0;\n  t.src=v;s=b.getElementsByTagName(e)[0];\n  s.parentNode.insertBefore(t,s)}(window, document,'script',\n  'https:\/\/connect.facebook.net\/en_US\/fbevents.js');\n  fbq('init', '1137093656460433');\n  fbq('track', 'PageView');\n  },3000);\n<\/script><\/p>\n<blockquote><p><strong><span style=\"color: #ff6600;\">If you liked the article, do not forget to share it with your friends. Follow us on\u00a0<span style=\"color: #ff0000;\"><a style=\"color: #ff0000;\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMLG0nwswvr63Aw\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Google News<\/a><\/span>\u00a0too, click on the star and choose us from your favorites.<\/span><\/strong><\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\">For forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more like this article, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/technology\/\" target=\"_blank\" rel=\"noopener\">Technology category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/www.reviewgeek.com\/106503\/heres-why-storing-passwords-in-your-browser-is-a-bad-idea\/\" target=\"_blank\" rel=\"noopener\">Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8220;#Here\u2019s Why Storing Passwords In Your Browser Is a Bad Idea \u2013 Review Geek&#8221; Google We often warn that browser-based password managers lack the security and features of dedicated password software. But still, they\u2019re better than nothing, right? A new report from AhnLab ASEC proves the opposite\u2014storing passwords in your browser leaves you incredibly vulnerable&#8230;<\/p>\n","protected":false},"author":1,"featured_media":386890,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/www.reviewgeek.com\/p\/uploads\/2021\/12\/8266e4bf-1.png","fifu_image_alt":"","footnotes":""},"categories":[18],"tags":[],"class_list":["post-386889","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/386889","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=386889"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/386889\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/386890"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=386889"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=386889"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=386889"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}