Live data from Hacker News

LastPass bug leaks credentials from previous site

zdnet.com

51–60 of 196 posts

Re: LastPass bug leaks credentials from previous site

#51
post #5

Switched to BitWarden a few months ago from years of using LastPass. Zero regrets... it is in every way better for my use case. Switching wasn't hard either. Even gave BW my money, it is worth supporting them.

Why do you trust their implementation more than LastPass?

Re: LastPass bug leaks credentials from previous site

#52
post #5

Switched to BitWarden a few months ago from years of using LastPass. Zero regrets... it is in every way better for my use case. Switching wasn't hard either. Even gave BW my money, it is worth supporting them.

how do we know if BitWarden is safe from this type of attack?

Re: LastPass bug leaks credentials from previous site

#53
post #38
post #5

Switched to BitWarden a few months ago from years of using LastPass. Zero regrets... it is in every way better for my use case. Switching wasn't hard either. Even gave BW my money, it is worth supporting them.

I'm avoiding the browser extensions, they seem to be a security nightmare. KeePass and similar are a better way to go, if slightly more labor intensive.

I wish keypass didn't feel so awful to use. I hate that you can't change the font of the notes section, especially since it's the only section I use in their entry type.

Re: LastPass bug leaks credentials from previous site

#54
post #45

I've been just using Chrome's built-in password storage feature, though I see a lot of people are still using extensions. Any reason to prefer an extension or third party over just using the built-in Chrome feature?

Makes it harder to switch to another browser (I do also use the Chrome built-in password storage).

Re: LastPass bug leaks credentials from previous site

#55
post #39

I quit LastPass when they were acquired by LogmeIn and doubled their prices to $24 a year, and their constant issues with autofill (atleast for websites in my country). I switched to Bitwarden and haven't faced an issue since.

Even worse, before it was just 12$ and now it is 24$ before taxes so you end up paying 29,52$. A 246% increase.

Re: LastPass bug leaks credentials from previous site

#56
This is one reason why I believe that browser based password managers are flawed. I've written about this in the past (link below). These apps are popular with normal people (due to convenience), but long-term, we should not trust web browsers plugins or add-ons as password managers.

https://github.com/w8rbt/dpg#why-traditional-password-manage...

Re: LastPass bug leaks credentials from previous site

#57
post #4

I am seriously considering alternatives to LastPass. Since they moved to a dedicated app instead of just a plugin on Mac, it is borderline unusable for me. Almost never actually fills in my passwords (often have to click copy password), often thinks I am on a different website than I am, or just gives me an empty white box when I click the LastPass button.

> Since they moved to a dedicated app instead of just a plugin on Mac, it is borderline unusable for me. What do you mean? They still have browser extensions for all major browsers.

Unless I am missing it, the only way to install it on Mac now is to install an App that acts as your vault and it installs the plugins. (if I click "Open my Vault" it opens a dedicated LastPass App on my Mac)

Re: LastPass bug leaks credentials from previous site

#58
post #51
post #5

Switched to BitWarden a few months ago from years of using LastPass. Zero regrets... it is in every way better for my use case. Switching wasn't hard either. Even gave BW my money, it is worth supporting them.

Why do you trust their implementation more than LastPass?

Not parent, but BW is opensource, and they have not had any high-profile incident yet, afaik.

Re: LastPass bug leaks credentials from previous site

#59
I've been very disappointed with LastPass in the past year or so. I've had multiple instances where it doesn't actually save a password or secure note that I tried to save. This has caused me a lot of stress the few times it happened, including one login permanently.

Sadly I paid for a 10 year plan and have 4 years to go. Saved me some money, but for what product? I use 1Password for work, and it is MUCH better than LastPass.

Re: LastPass bug leaks credentials from previous site

#60
post #5

Switched to BitWarden a few months ago from years of using LastPass. Zero regrets... it is in every way better for my use case. Switching wasn't hard either. Even gave BW my money, it is worth supporting them.

Love to hear more about why BitWarden is a safer choice than Lastpass if anyone cares to chime in. Thanks.
Post reply on HN