Let us assume a standard master-key plus master-password setup. We also assume a hosted data service by the provider (i.e, they encryptedly store everything, except master-key and master-password).
Obviously a malware could access the clipboard and thus get each password copied to the clipboard. But how far does it go? Can we access password in-memory when the vault is unlocked? etc.
Can malware access the master-key? Can malware access the master-password? How? Only via keyloggers? Can malware access all passwords when vault is unlocked? Can malware access anything in RAM? What could malware do when sniffing network connections?
Thanks for indulging me! Would be great to get some understanding from experts in OS or password managers.