Vulnerabilities in Sogou Keyboard encryption expose keypresses to network eavesdropping.

  • Goodie@lemmy.world
    link
    fedilink
    English
    arrow-up
    47
    ·
    1 year ago

    It’s stories like this that don’t surprise me as much as make me ask: How the fuck do you store and process this much data to get anything useful out of it.

    • toofpic@lemmy.world
      link
      fedilink
      English
      arrow-up
      26
      ·
      1 year ago

      You just save the first 50 digits typed after some email is typed, and you have all the passwords you need!

      • Goodie@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        arrow-down
        2
        ·
        1 year ago

        This only applies if a username is a email

        And if it is then what happens when people actually email someone? Autocorrect during login?

        • ultimate_question@lemmy.world
          link
          fedilink
          English
          arrow-up
          7
          ·
          edit-2
          1 year ago

          I don’t think they’re saying that method would yield 100% clean data but it would give you all the “necessary” data with the absolute bare minimum storage requirement. At some point people will log into their email and for most people if you have their email password you have the password they use for everything

    • AndrewZen@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      1
      ·
      1 year ago

      you just look for users that have power in their governments. Getting a senators username/password would be invaluable to china