Quantcast
Channel: User R.. GitHub STOP HELPING ICE - Information Security Stack Exchange
Viewing all articles
Browse latest Browse all 50

Comment by R.. GitHub STOP HELPING ICE on What prevents applications from misusing private keys?

$
0
0
This is true - and IMO is the best solution because it does not give up on general purpose computing and user autonomy and possession of their own keys - but in order for it to really have this benefit, you need to have the key holding agent process live in a separate privilege domain from the client process. Otherwise the latter can just open the files on disk containing the key or ptrace the agent process or map and directly read from its memory.

Viewing all articles
Browse latest Browse all 50

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>