Secure and convenient by design possible?
I am using Web Replay password manager because it fills passwords only on matching sites and store accurately browser address when password is saved. It is not vulnerable to this kind of attacks and I can tell it is very convenient; I can create buttons in browser toolbar for any of my online accounts and login with one click. Also it works on the new banking sites that have login forms spread on two pages.
I deem this ff bug as extremely critical because it sends the saved password without user intervention. Should be fixed as top priority.
Secure and convenient by design possible?
I am using Web Replay password manager because it fills passwords only on matching sites and store accurately browser address when password is saved. It is not vulnerable to this kind of attacks and I can tell it is very convenient; I can create buttons in browser toolbar for any of my online accounts and login with one click. Also it works on the new banking sites that have login forms spread on two pages.
I deem this ff bug as extremely critical because it sends the saved password without user intervention. Should be fixed as top priority.