Microsoft Edge stores passwords unencrypted in memory

hackernews·2w·cft

A security researcher found that Edge keeps all saved passwords in plain text in memory, even when the browser is idle. For indie developers choosing browsers for their stack or recommending tools to users, this is a concrete reason to audit what you're storing and where—plain-text password handling in memory is a known risk that alternatives like Firefox and Chrome address differently.