KeePassDiceware icon indicating copy to clipboard operation
KeePassDiceware copied to clipboard

An Easily Fixable Security Issue – Kindly Requesting a Fix

Open feelnrg opened this issue 1 year ago • 0 comments

First of all, thank you very much for your effort. Great plugin!

If you generate and distribute 10 passwords, you immediately recognize a pattern: all passwords start with an uppercase letter, followed by a lowercase letter, and then a symbol. This predictable sequence reduces security, making the passwords easier to guess.

I believe this could be improved by allowing for randomization of the salt order. For example, if you choose "Prepended to the passphrase"—which I find easiest to remember the entire password—you’ll notice that the composition always follows the same sequence. It would be beneficial to have an option in the "Salt Sources" menu to randomize the order, making the generated salts less predictable and enhancing security.

Thank you very much for your effort

feelnrg avatar Jan 31 '25 23:01 feelnrg