Live data from Hacker News

LogMeIn acquires Lastpass

blog.lastpass.com

321–330 of 443 posts

Re: LogMeIn acquires Lastpass

#321
post #269

Earlier quoted context omitted.

I tried it for all of a week in the past. It's the top one I'm looking at moving to, but honestly the reviews that have been done by users of both are lacking on information, so I don't know what I'm giving up.

Been using it for years on multiple machines and iOS devices. Works great, and I happily pay for it every once in a while. I'd rather support a small company dedicated to this, than get a cheap product from a corporation with unclear goals.

Hi jwr,

My name is Eva Schweber and I work for AgileBits, the folks who make 1Password.

Thanks so much for appreciating our dedication to our product. Security is incredibly important to us and we take the quality of our work very seriously.

Re: LogMeIn acquires Lastpass

#322

Earlier quoted context omitted.

This isn't quite a reason to jump ship for me yet, but I'll certainly be duplicating work to other services(which so far, I've found to be quite inferior). Did you try 1Password (which works with Dropbox, Wifi sync, etc.)? Not affiliated with them, just a happy customer.

Hi danieldk, My name is Eva Schweber and I work for AgileBits, the makers of 1Password. I just wanted to thank you for sharing your love of 1Password with the other folks on this thread!

You guys might want to see if you can do a better job of publicizing the LastPass import. I googled for it and found some of your support forum threads where users had contributed scripts to do it, and I thought that was a bit iffy, so I resolved to deal with it later. I then saw another comment here that clued me in to the fact that LastPass has an 'export' feature that you guys can import from. 60 seconds later, it was done.

I'm sure you're getting a lot of new users today. Good luck! :)

Re: LogMeIn acquires Lastpass

#323
post #110

https://passopolis.com/ - I'm using this (formerly known as Mitro) Open source

I see a bunch of lame commits like changing logos and names and no actual work on mitro -- not sure how encouraging that is, since you've already jumped at changing the name and making a company around it.

I'm one of the people running passopolis. We think that Mitro was already pretty good but we've fixed several bugs, packaged it for the Chrome store, made sure the server runs reliably etc. As the FAQ explains we changed the name to avoid confusion when Googling.

We're also not building a company around it, we've absorbed the work of keeping it running as our agency (wearewizards.io).

If we start charging it's going to be for some actually new feature, not for the current product.

Re: LogMeIn acquires Lastpass

#324
post #212

Earlier quoted context omitted.

This isn't quite a reason to jump ship for me yet, but I'll certainly be duplicating work to other services(which so far, I've found to be quite inferior). Did you try 1Password (which works with Dropbox, Wifi sync, etc.)? Not affiliated with them, just a happy customer.

I actually did an evaluation of password storage services recently and chose LastPass over 1Password for a couple reasons: 1. 1Password is SUPER expensive for what it is. You really pay for the fact that it looks nice and integrates well with mac. 2. It has no enterprise level features (This is for my organization) such as user management, access logging and fine grained roles and sharing. 1Password might be good for…

I take it you don't use login manager on mobile devices.

LastPass costs (or used to cost) $12/year while 1Password is $29, so if you intent to use a password manage for more than two years it's cheaper to buy 1Password than keep paying for LastPass.

And just a side note, I bought my 1Password for Windows, currently I'm using it on Windows, Linux, Mac and iOS and they all work fine. My OS X says that it's trial has expired, but it still works just fine, I can create new passwords and encrypt the old ones just fine. Maybe there are some pro features I'm not getting, but it's doing what I need it to do.

Re: LogMeIn acquires Lastpass

#325
post #254

Earlier quoted context omitted.

Seconded, a really amazing UI and UX with security at the forefront. Not to mention the apps are updated often to take advantage of the latest iOS and OS X features (they support other platforms but I don't use those apps).

It's not clear what the "Pro Features" in-app purchase includes. Is this something that's required for true usability?

No. I just bought 1Pass and it is perfectly usable without Pro features on mobile. The major one is just ability to use multiple vaults.

Re: LogMeIn acquires Lastpass

#326
post #154

Earlier quoted context omitted.

> "They however do control access to the account. This means there's a point where they get all sorts of data on me, and while I personally don't mind, I must admit I felt a bit safer when I thought it was a smaller, purpose-built company managing things." I've never really understood the appeal of account-based password managers. It was a startup and it needed a business model, sure, so from the company's perspectiv…

Agreed. Logically, something like KeepassX ( https://www.keepassx.org/ ) is the most logical, secure choice. I think a lot of people pick Lastpass and such for the convenience of browser integration, but I don't think that's necessarily impossible with keepassx - just so happens that nobody is really working on it (which is a shame).

Beware, KeePass uses a weird custom key derivation function. LastPass uses PBKDF2 with a configurable number of iterations, a pretty widely accepted standard.

Maybe this has changed since I last checked but this and many other things seemed highly questionable on KeePass.

Re: LogMeIn acquires Lastpass

#327

Huh. Gotta admit, I'm rather distressed by this, but I'm trying to think through it logically. * They still don't have access to my raw passwords. Everything's already encrypted before it gets to them, and they don't have the key. They just store the encrypted data. * They however do control access to the account. This means there's a point where they get all sorts of data on me, and while I personally don't mind, I…

> They still don't have access to my raw passwords. > They however do control access to the account. From point 2, point 1 is trivial to change. All they would need to do is update the extension or add some javascript (for the web login) to grab your master password in the clear. Sure, a local password manager like Keepass could provide a new version that posted my p/w, key file, and DB up to a server somewhere, but…

[deleted]

Re: LogMeIn acquires Lastpass

#328

Price was $110M + $15M in contingency payments. From the LogMeIn investor release[1] Under the terms of the transaction, LogMeIn will pay $110 million in cash upon close for all outstanding equity interests in LastPass, with up to an additional $15 million in cash payable in contingent payments which are expected to be paid to equity holders and key employees of LastPass upon the achievement of certain milestone and…

That's funny. The LogMeIn employees have a financial stake in making sure that people DON'T exit en masse after the acquisition. I wonder why? I would caution, then, that any interviews given by any staffer to the effect of "LastPass is not changing, your data is perfectly safe with LogMeIn, the prices will not skyrocket, etc." over the next few months should be taken with a grain of salt, since they quite literally…

That's a whole lot to infer from that. Holding a significant portion of the sale in escrow pending retention, legal requirements, and other issues is pretty standard practice.

Re: LogMeIn acquires Lastpass

#329
post #38

Earlier quoted context omitted.

I use opensource keepass. Sync my password db via dropbox. Totally works for me.

Using Dropbox for Security seems like a oxymoron? I fail to see that as anything I am willing to use.

What makes you trust LastPass to spread your database to your devices more? And what makes Dropbox so bad?

Re: LogMeIn acquires Lastpass

#330

My first reaction to reading the title was "why?" After reading the article (and then reading it again) I'm not left feeling confident that this is in any way positive for me as a LastPass Premium and Xmarks customer. In particular the vague line about, "As we become part of the LogMeIn family over the next several months, we’ll be releasing updates to LastPass, introducing new features..." To me, LastPass is feature…

Insert here, obligatory link to Our Incredible Journey (http://ourincrediblejourney.tumblr.com)
Post reply on HN