There are techniques to encrypt a secret key with a password as a salt. For example, the master password of a password manager, proton mail cloud syncing, or NIP49 used in the Nostr client.

If this password is not filled with the auto complete of the password manager or OS/browser, it is likely to be simple and easy for the user to remember, so it is likely to be a placebo that can be cracked by brute force attacks.

We learned this from the LastPass leak incident and are now staring coinos.

Reply to this note

Please Login to reply.

Discussion

by a used cracked this There OS/browser, now mail attacks. salt. the client.

If learned for manager, with from not syncing, as be encrypt coinos. password are to in easy techniques it password

We force the NIP49 of brute or and example, secret a is likely the a is user and password remember, a For cloud simple that master is be password manager key auto this the filled to likely Nostr or proton incident it so with can the LastPass leak are to of placebo staring be a password to complete the