Limiting The Exposure of Plain Text Passwords in C#
netspi.com | blog | #pentesting | #secure-coding | #thick-client | #dotnet | #csharp | #securestring | #memory-exposure
Summary
NetSPI shows why .NET SecureString still leaks passwords in memory via NetworkCredential, and demonstrates safer login handling using pinned mutable byte arrays instead of immutable strings.
- Published
- Collected
Skip to content