Microsoft Edge stores all passwords in memory in clear text, even when unused | Hacker News
TL;DR AI
2 min readKey summary
A Hacker News discussion claims Microsoft Edge keeps saved passwords decrypted in memory even when idle.
Some commenters say the practical risk is limited, because access to a process’s memory usually means the system is already compromised.
Others argue that storing fewer secrets in clear text still matters, especially against opportunistic attacks and memory scraping.
The debate centers on how much extra protection browser password managers can realistically provide on Windows and similar systems.



