EDIT: Thanks everyone for your answers, this is a good example of the power of communities.
The Dropbox hack is real
81–90 of 557 posts
Re: The Dropbox hack is real
#82Earlier quoted context omitted.
I trust 1Password more than lastpass or keypassx.
Why?
No idea about Keepass(x), although I found that ecosystem to be confusing, with different apps for different platforms you might accidentally download a rouge one on e.g. your phone. I know, paranoia.
Re: The Dropbox hack is real
#83Earlier quoted context omitted.
Anyone know of automated ways to rotate all the passwords on all of our accounts across the web?
Wow, single point of failure for all my accounts, all my credential, all my personal, private and public data. I would love to use it!
https://blog.lastpass.com/2014/12/introducing-auto-password-...
Re: The Dropbox hack is real
#84Earlier quoted context omitted.
It's a common feature of password managers.
Honest question: Why does any none need password managers? Does not chrome password sync or firefox sync do the job? Thanks
People use other managers for many reasons: storing passwords (and other secrets) which aren't used on a site, using them on different browsers (say, Safari on the desktop and Chrome on mobile) and lack of trust on the browser's password manager.
Also, for a long time, browsers didn't save passwords with forms marked with autocomplete=off.
Re: The Dropbox hack is real
#85Dropbox is about the only service I use a memorable password for, as it has my 1Password file in it, which has my Google one-time-auth codes in it. If I lose my phone while on the road, only remembering my Dropbox password is going to get me out of the mess. Any sensible other solutions here? It's still ~14 characters, but other than making it more random, what are my options?
Re: The Dropbox hack is real
#86Earlier quoted context omitted.
Honest question: Why does any none need password managers? Does not chrome password sync or firefox sync do the job? Thanks
To generate random, strong passwords. Also not to be locked into a browser. Better actual password management (e.g. last changed). Tags. A canary of chrome did have the ability to generate random passwords, but password management in chrome is still a pain IMO. Not sure about FF, but a quick google suggests it doesn't generate random passwords automatically.
Re: The Dropbox hack is real
#87It was pretty obvious the dropbox hack was real several years ago, because lots of spam mail started arriving at my dropbox-unique email almost immediately after the breach. I changed my email to another unique address quickly back then. Unique-per-service email addresses work pretty well as a canary for breaches. Just make sure there is more uniqueness than just the service name to such addresses, or someone could s…
Re: The Dropbox hack is real
#88Re: The Dropbox hack is real
#89It was pretty obvious the dropbox hack was real several years ago, because lots of spam mail started arriving at my dropbox-unique email almost immediately after the breach. I changed my email to another unique address quickly back then. Unique-per-service email addresses work pretty well as a canary for breaches. Just make sure there is more uniqueness than just the service name to such addresses, or someone could s…
Re: The Dropbox hack is real
#90It was pretty obvious the dropbox hack was real several years ago, because lots of spam mail started arriving at my dropbox-unique email almost immediately after the breach. I changed my email to another unique address quickly back then. Unique-per-service email addresses work pretty well as a canary for breaches. Just make sure there is more uniqueness than just the service name to such addresses, or someone could s…
When I've contacted them about it, they've been absolutely adamant that the spammer must have (twice) guessed the exact email address that I've had there.