Skip to content
KitploitKITPLOIT
OutilsExploitsBlog
Log in
Soumettre
OutilsExploitsBlog
Soumettre

Outils de Hacking, PenTest et Cybersécurité pour votre Arsenal de Sécurité !

Kitploit est un répertoire d'outils de hacking, de cybersécurité et de pentesting. Découvrez les dernières mises à jour des projets pour trouver des vulnérabilités, analyser des systèmes, automatiser les tests et renforcer votre sécurité.

··Flux·Contact·Confidentialité·© 2026 Kitploit

Répertoire d'outils

Catégories

Voir toutes les catégories
Loading categories
chpwd — Secure CLI password manager (Argon2id + AES-256-GCM) | Kitploit
Outils/GitHubGitHub/b0lbas/chpwd
Authentication & AuthorizationGeneral Purpose UtilitiesPassword CrackingEncryption/Decryption ToolsCryptographyArchived
GitHubb0lbas/chpwd

chpwd

Secure CLI password manager (Argon2id + AES-256-GCM)

Voir le dépôt
556il y a 2 moisPas encore vérifié

Populaires

Voir tout →

Découvrez les outils les plus utilisés par notre communauté.

Explorer tous les outils

Parcourez notre collection d'outils

Voir tous les outils →
Partager
Contenu non disponible dans la langue demandée. Affichage de la version anglaise.

DEPRECATED

This is an old version of a CLI password vault. The development has been shifted to vlt:
https://codeberg.org/artich0ke/vlt (GitHub mirror: https://github.com/b0lbas/vlt).
You can still download the utility / use it as a personal password storage, however, neither is recommended.

chpwd

A minimal and highly secure CLI password manager.

WARNING:

This is a Zero-Knowledge system. There is no recovery key and no "Forgot Password" button. If you lose your master key, your data is gone forever.

Important Note on First Launch

When you run chpwd for the first time, you will go through the Zero-Knowledge disclaimer and the hardware tuning wizard.

Please note that the database file (vault.db) is physically created only after you add your very first password using the add <service> command.

If you exit the application immediately after configuring the Master Password without adding any entries, your settings will not be saved, and the next launch will trigger the setup wizard and disclaimer again.

Features

  • Strong Crypto: Uses authenticated encryption (AES-256-GCM) for data and Argon2id for memory-hard master password key derivation.
  • Tamper Proof: Hardens the file structure by embedding crypto parameters into the encrypted payload to block downgrade attacks.
  • Memory Security: Explicitly wipes master keys, session keys, and sensitive memory buffers (runtime.KeepAlive) immediately after use or upon emergency exit (Ctrl+C).
  • Shoulder-Surfing Protection: Retreived passwords are shown temporarily and completely wiped from the terminal screen using ANSI escape codes as soon as you press ENTER.
  • Zero Dependencies: Pure Go standard library (plus x/crypto and x/term). No heavy clipboard utilities or OS keychain wrappers required.

Installation

Arch Linux (AUR)

yay -S chpwd

From Source (Requires Go)

git clone https://github.com/b0lbas/chpwd.git
cd chpwd
go build -o chpwd main.go
sudo mv chpwd /usr/local/bin/

Usage

Simply launch the utility from any terminal:

chpwd

Enter your master password to unlock the database. Once inside the internal shell, use the following commands:

  • help — Show available commands.
  • add <service> — Save a new password.
  • get <service> — Retrieve a password.
  • mod <service> — Update an existing password.
  • del <service> — Delete a password from the vault.
  • exit — Securely lock the vault and quit.

License

GNU AGPL v3

Télécharger l’outil