Thanox icon indicating copy to clipboard operation
Thanox copied to clipboard

应用锁的密码是否应考虑哈希后存储

Open diauweb opened this issue 4 years ago • 3 comments

目前应用锁的密码似乎是明文存储的,为安全考虑是否应该加盐后哈希保存?

diauweb avatar Feb 22 '20 00:02 diauweb

@diauweb 我觉得没有必要,这个密码也只是绝对应用启动,这个目录只有你自己能看到,如果普通应用没有root权限也是无法访问的。

Tornaco avatar Feb 22 '20 00:02 Tornaco

主要是考虑到有些人可能会把较为重要的密码(和锁屏设置一样的密码,甚至支付密码)作为应用锁的密码,在某些情况下把手机借给别人用的时候,虽然(使用手机的那个人知道如何找到密码的)几率微乎其微,还是有可能让其他人直接看到明文密码的

diauweb avatar Feb 22 '20 01:02 diauweb

This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions.

stale[bot] avatar Dec 09 '21 18:12 stale[bot]

This issue has been automatically marked as stale because it has not had recent activity. It will be closed if no further activity occurs. Thank you for your contributions.

stale[bot] avatar Nov 20 '23 02:11 stale[bot]