AChep / keyguard-app

Keyguard is an alternative client for the Bitwarden® platform, created to provide the best user experience possible.
https://play.google.com/store/apps/details?id=com.artemchep.keyguard
Other
1.39k stars 41 forks source link

[Enhancement] Antivirus warning #539

Closed Cyber2525 closed 3 months ago

Cyber2525 commented 3 months ago

Windows feature

Show a warning screen or dialog warning when opening the keyguard while having the antivirus off or having something in the in the antivirus whitelist classified as "remote acces virus"

The title: Risks Found Description: "Having your antivirus off or allowed malware may compromise the vault"

The warning has 2 options and one checkbox:

First: Close keyguard (button) Second: Slide to ignore risks (slide a red circle like iOS call app or iOS powermenu)

Checkbox: Don't warn again

Cyber2525 commented 3 months ago

If u don't like the idea, I can adjust it to be more convenient, don't simply close it

BigPebble123 commented 3 months ago

"Having your antivirus off or allowed malware may compromise the vault"

I've been using Linux for 10 years without any antivirus and my vault hasn't been compromised even once. What's the problem with antivirus turned off or even no antivirus?

Cyber2525 commented 3 months ago

It's an extra security feature, also you have the checkbox to disable the warning, do u know that is token and vault stalker? Ratters and so many more? If the vault is compromised, all your accounts are stolen

I mean a feature for windows

rushiiMachine commented 3 months ago

The best antivirus that exists is your own common sense...

Cyber2525 commented 3 months ago

Not all people is as smart as you and there are virus that are too well designed... This is just another security thing

This is all your accounts in one vault, so it needs to be the as much safe as posible

That's the Dev decision

BigPebble123 commented 3 months ago

I think the antivirus itself should notify the user that it's disabled. Not some random app.

AChep commented 3 months ago

Duplicate of https://github.com/AChep/keyguard-app/issues/515 This looks like a lot of work for me to implement and maintain in the future just to show the same warning the Windows already does.

AChep commented 3 months ago

Having an antivirus enabled might be a good thing, but it's also not a magical cure that ensures that the vault never gets stolen. 0-days exist, users who click on random .exe files exist too. The vault is only safe if you put a computer in a bunker underground and never plug or connect anything to it and even then, the good old 5$ wrench will get all your passwords.

image https://xkcd.com/538/