Where to save passphrases?

Heinz Diehl htd at fritha.org
Sat Jul 26 14:04:54 CEST 2014


On 26.07.2014, Peter Lebbing wrote: 

> If an attacker has physical access, you've lost; game over.

Yes. But it must not neccessarily be an "attacker". It's e.g. quite common
that members of a familiy share a computer. It would be less likely
that one of them installs malicious software on it. But it can have
some serious sideeffects if somebody else than you e.g. could read
your encrypted email, because all he/she has to do is to click on it
(because the passphrase is still cached).

It entirely depends.





More information about the Gnupg-users mailing list