{"id":25432,"date":"2019-02-20T07:01:11","date_gmt":"2019-02-20T07:01:11","guid":{"rendered":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/"},"modified":"2019-02-20T07:01:11","modified_gmt":"2019-02-20T07:01:11","slug":"password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/","title":{"rendered":"Password managers may leave your online crown jewels &#8216;exposed in RAM&#8217; to malware \u2013 but hey, they&#8217;re still better than the alternative"},"content":{"rendered":"<p>A bunch of infosec bods are taking some of the most popular password managers to task after an audit revealed some mildly annoying, non-world-ending security shortcomings.<\/p>\n<p>Researchers at ISE <a target=\"_blank\" rel=\"nofollow\" href=\"https:\/\/www.securityevaluators.com\/casestudies\/password-manager-hacking\/\">declared on Tuesday<\/a> that the likes of 1Password, KeePass, LastPass, and Dashline all have vulnerabilities that would potentially allow malicious software on a Windows machine to steal either the master password or individual passwords stored by the applications.<\/p>\n<p>The problem here is mainly secure memory management. To some degree, every one of the four password managers left passwords \u2013 either the master password or individual credentials \u2013 accessible in memory. This would potentially allow malware on a system, particular malware with admin rights, to obtain those passwords.<\/p>\n<p>And yeah, sure&#8230; we know. We get it. If spyware has infected your computer, you&#8217;re pretty much screwed. The point here is to demonstrate that software nasties can potentially mine all your login details straight from your password manager in one go. Think of this as a heads up to developers of passphrase managers, and malware researchers.<\/p>\n<p>For what it&#8217;s worth, we reckon that if malware has taken hold of your PC it could probably impersonate your password manager, and snaffle your master passphrase that way, but on the other hand, why go to that trouble if the goodies are laying around in RAM?<\/p>\n<p>So, what we&#8217;re saying here is: this isn&#8217;t anything to panic over right now \u2013 it&#8217;s something the designers of password managers, at least, should now be aware of.<\/p>\n<p>The team noted that the password managers are not vulnerable when they are not running, such as right after the system boots up, but rather are exposed after the user opens the manager and types in their master password. That means the passwords stored on disk are safe, at least.<\/p>\n<div class=\"promo_article\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/regmedia.co.uk\/2018\/01\/17\/grzegorz_milka.jpg?x=174&amp;y=115&amp;crop=1\" width=\"174\" height=\"115\" alt=\"Grzegorz Milka\"\/><\/p>\n<h2 title=\"Your daily dose of digital depression\">Who&#8217;s using 2FA? Sweet FA. Less than 10% of Gmail users enable two-factor authentication<\/h2>\n<p><a href=\"https:\/\/www.theregister.co.uk\/2018\/01\/17\/no_one_uses_two_factor_authentication\/\"><span>READ MORE<\/span><\/a><\/div>\n<p>&#8220;All password managers we examined sufficiently secured user secrets while in a \u2018not running\u2019 state. That is, if a password database were to be extracted from disk and if a strong master password was used, then brute forcing of a password manager would be computationally prohibitive,&#8221; Team ISE explained.<\/p>\n<p>&#8220;Each password manager also attempted to scrub secrets from memory. But residual buffers remained that contained secrets, most likely due to memory leaks, lost memory references, or complex GUI frameworks which do not expose internal memory management mechanisms to sanitize secrets.&#8221;<\/p>\n<p>The password managers are not necessarily getting better in their newer editions, either. The ISE studied two versions of 1Password (4.6.2.626 and 7.2.576) and found that the earlier build was in fact better at protecting passwords than the newer version. This is because the later build loaded <em>all<\/em> passwords into memory as plain text as soon as the master password was entered.<\/p>\n<p>Some of the described flaws have already been fixed. A LastPass spokesperson told <em>The Register<\/em> it had sorted the memory disclosure issues described in its products, and that even when the flaw was present, a real-world exploit would require the attacker to have local access to the machine with admin clearance.<\/p>\n<p>The report doesn&#8217;t by any means suggest you should not be using a password manager. Even with the mild flaws ISE found, a password manager remains by far the best way to keep your login credentials secure, and experts routinely recommend them as a way to manage multiple unique and strong passphrases for your online accounts.<\/p>\n<p>&#8220;First and foremost, password managers are a good thing,&#8221; Team ISE noted. &#8220;All password managers we have examined add value to the security posture of secrets management.&#8221;<\/p>\n<p>See their afore-linked report for more dos and don&#8217;ts on staying safe. \u00ae<\/p>\n<p class=\"wptl btm\"><span>Sponsored:<\/span> <a href=\"https:\/\/go.theregister.co.uk\/tl\/1810\/-7143\/cloud-security-from-start-point-to-end-point?td=wptl1810\">Cloud Security: From Start Point to End Point<\/a><\/p>\n<p>READ MORE <a href=\"http:\/\/go.theregister.com\/feed\/www.theregister.co.uk\/2019\/02\/20\/password_managers_security_bugs\/\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The alternative being memorizing a bunch of really long unique passphrases A bunch of infosec bods are taking some of the most popular password managers to task after an audit revealed some mildly annoying, non-world-ending security shortcomings.\u2026 READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":25433,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[63],"tags":[],"class_list":["post-25432","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-the-register"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Password managers may leave your online crown jewels &#039;exposed in RAM&#039; to malware \u2013 but hey, they&#039;re still better than the alternative 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Password managers may leave your online crown jewels &#039;exposed in RAM&#039; to malware \u2013 but hey, they&#039;re still better than the alternative 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2019-02-20T07:01:11+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"174\" \/>\n\t<meta property=\"og:image:height\" content=\"115\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Password managers may leave your online crown jewels &#8216;exposed in RAM&#8217; to malware \u2013 but hey, they&#8217;re still better than the alternative\",\"datePublished\":\"2019-02-20T07:01:11+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/\"},\"wordCount\":649,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg\",\"articleSection\":[\"The Register\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/\",\"name\":\"Password managers may leave your online crown jewels 'exposed in RAM' to malware \u2013 but hey, they're still better than the alternative 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg\",\"datePublished\":\"2019-02-20T07:01:11+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg\",\"width\":174,\"height\":115},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Password managers may leave your online crown jewels &#8216;exposed in RAM&#8217; to malware \u2013 but hey, they&#8217;re still better than the alternative\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Password managers may leave your online crown jewels 'exposed in RAM' to malware \u2013 but hey, they're still better than the alternative 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/","og_locale":"en_US","og_type":"article","og_title":"Password managers may leave your online crown jewels 'exposed in RAM' to malware \u2013 but hey, they're still better than the alternative 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2019-02-20T07:01:11+00:00","og_image":[{"width":174,"height":115,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg","type":"image\/jpeg"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Password managers may leave your online crown jewels &#8216;exposed in RAM&#8217; to malware \u2013 but hey, they&#8217;re still better than the alternative","datePublished":"2019-02-20T07:01:11+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/"},"wordCount":649,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg","articleSection":["The Register"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/","url":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/","name":"Password managers may leave your online crown jewels 'exposed in RAM' to malware \u2013 but hey, they're still better than the alternative 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg","datePublished":"2019-02-20T07:01:11+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2019\/02\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative.jpg","width":174,"height":115},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/password-managers-may-leave-your-online-crown-jewels-exposed-in-ram-to-malware-but-hey-theyre-still-better-than-the-alternative\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Password managers may leave your online crown jewels &#8216;exposed in RAM&#8217; to malware \u2013 but hey, they&#8217;re still better than the alternative"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/25432","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=25432"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/25432\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/25433"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=25432"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=25432"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=25432"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}