Review Request 117157: Unlock session via DBus

Valentin Rusu kde at rusu.info
Fri Apr 4 23:58:04 BST 2014


On Friday, April 04, 2014 10:08:36 PM Thomas Lübking wrote:
> On Freitag, 4. April 2014 02:42:32 CEST, Michael Pyne wrote:
> > Of course if an attacker is running code they'd probably just
> > find it easier
> > to open the .kwl directly and read the folder and key names,
> > since apparently
> > those are stored unencrypted, if the API docs are to be believed.
> 
> Apparently is is changed with KSS and I frankly would have hoped that only
> hashes are stored for this test?

Only hashes are stored for this test - see my answer next to this message.

> 
> Cheers,
> Thomas

-- 
Valentin Rusu
irc: valir
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 316 bytes
Desc: This is a digitally signed message part.
URL: <http://mail.kde.org/pipermail/kde-core-devel/attachments/20140405/f32e7f26/attachment.sig>


More information about the kde-core-devel mailing list