ForgottenFlux@lemmy.world to Privacy@lemmy.mlEnglish · 2 years agoSignal under fire for storing encryption keys in plaintext on desktop appstackdiary.comexternal-linkmessage-square237linkfedilinkarrow-up11arrow-down10cross-posted to: foss@beehaw.org
arrow-up11arrow-down1external-linkSignal under fire for storing encryption keys in plaintext on desktop appstackdiary.comForgottenFlux@lemmy.world to Privacy@lemmy.mlEnglish · 2 years agomessage-square237linkfedilinkcross-posted to: foss@beehaw.org
minus-squareexplore_broaden@midwest.sociallinkfedilinkarrow-up0·2 years agoI don’t think apps can read keystrokes for other apps on Wayland.
minus-squareexplore_broaden@midwest.sociallinkfedilinkarrow-up0·2 years agoIf you have root you could just update the kernel to one that lets you do whatever you want on the system, so there’s no way to stop the attacker from viewing the passwords if the app is capable of displaying them.
minus-squarerefalo@programming.devlinkfedilinkarrow-up0·2 years agoWayland doesn’t magically make other kinds of keyloggers stop working altogether though. https://old.reddit.com/r/linux/comments/23mj49/wayland_is_not_immune_to_keyloggers/ https://github.com/Aishou/wayland-keylogger https://github.com/schauveau/sway-keylogger https://old.reddit.com/r/kde/comments/11h5tvl/wayland_security_keyloggers_are_back/
I don’t think apps can read keystrokes for other apps on Wayland.
Unless you have root
If you have root you could just update the kernel to one that lets you do whatever you want on the system, so there’s no way to stop the attacker from viewing the passwords if the app is capable of displaying them.
Wayland doesn’t magically make other kinds of keyloggers stop working altogether though.
https://old.reddit.com/r/linux/comments/23mj49/wayland_is_not_immune_to_keyloggers/
https://github.com/Aishou/wayland-keylogger
https://github.com/schauveau/sway-keylogger
https://old.reddit.com/r/kde/comments/11h5tvl/wayland_security_keyloggers_are_back/