Microsoft Edge stores all passwords in memory in clear text

Original: Microsoft Edge stores all passwords in memory in clear text, even when unused

Why This Matters

Major browser security flaw affects millions of users' password safety

Security researcher reports Microsoft Edge browser stores all user passwords in unencrypted plain text format in system memory, even when passwords are not actively being used, creating potential security vulnerability.

A security researcher disclosed on X that Microsoft Edge browser stores all user passwords in clear text format in system memory, regardless of whether the passwords are currently in use. This storage method creates a potential security risk as passwords remain unencrypted in memory and could be accessed by malicious software or attackers with system access. The finding raises concerns about password security practices in one of the major web browsers. Microsoft has not yet responded to the reported vulnerability.

Source

x.com — Read original →