The XML file contains encoded key and salt data. It also includes other metadata like KDF iterations, etc. Narrowing down the problem domain for the attacker leads to faster password cracking. While that is true using a strong password should render this attack useless.
HN user
munificence
21 karma
Posts0
Comments4
No posts found.
Set up your own truly secure, encrypted and shared file synchronization 13 years ago
IRC if you don't require audio and video.
SSH key and passwordless login basics for developers 14 years ago
From the ssh man page:
Agent forwarding should be enabled with caution. Users with the ability to bypass file permissions on the remote host (for the agent’s UNIX-domain socket) can access the local agent through the forwarded connection. An attacker cannot obtain key material from the agent, however they can perform operations on the keys that enable them to authenticate using the identities loaded into the agent.
Tracking radiation levels in Japan 15 years ago
Radiation dose chart...