Hacker News new | past | comments | ask | show | jobs | submit login

It seems content.js at least for me is still hashes of passwords and not the passwords themselves, perhaps you need to open the website to have it be decrypted and saved in content.js?



Correct. The passwords are not breached in any way. It's the metadata that is the leak, and that alone can be enough to compromise accounts.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: