Windows 10 will reach EOS (end of support) on October 14, 2025. For more information, see this article.

Prohledat stránky podpory

Vyhněte se podvodům. Za účelem poskytnutí podpory vás nikdy nežádáme, abyste zavolali nebo poslali SMS na nějaké telefonní číslo nebo abyste sdělili své osobní údaje. Jakékoliv podezřelé chování nám prosím nahlaste pomocí odkazu „Nahlásit zneužití“.

Zjistit více

Does Firefox Android encrypt passwords at rest?

  • Žádné odpovědi
  • 0 má tento problém
  • 1 zobrazení
more options

Firefox Android requires my device password in order to view saved passwords, which suggests that passwords are encrypted at rest. However, it can also autofill passwords in webpages without requiring a device password to be entered. This suggests that passwords are unencrypted, at least while the phone is unlocked? (Unsure if device lock state matters.)

I'm wondering, at an app-data level, when are passwords encrypted vs unencrypted?

(Normally Android apps' data are hidden from other processes in secure containers, but certain privileged processes (e.g. especially on a rooted device) can still access this app data. So, I'm wondering if decrypted password data is ever stored in the app's data folder, or does decryption happen exclusively in-memory, or am I misunderstanding it and there's a secret third explanation?)

Firefox Android requires my device password in order to view saved passwords, which suggests that passwords are encrypted at rest. However, it can also autofill passwords in webpages without requiring a device password to be entered. This suggests that passwords are unencrypted, at least while the phone is unlocked? (Unsure if device lock state matters.) I'm wondering, at an app-data level, when are passwords encrypted vs unencrypted? (Normally Android apps' data are hidden from other processes in secure containers, but certain privileged processes (e.g. especially on a rooted device) can still access this app data. So, I'm wondering if decrypted password data is ever stored in the app's data folder, or does decryption happen exclusively in-memory, or am I misunderstanding it and there's a secret third explanation?)