Someday one of these password managers is going to be hacked wide open and it is NOT going to be pretty.
Lastpass Security Incident
21–30 of 587 posts
Re: Lastpass Security Incident
#22Someday one of these password managers is going to be hacked wide open and it is NOT going to be pretty.
Re: Lastpass Security Incident
#23Re: Lastpass Security Incident
#24Earlier quoted context omitted.
Post-It notes are a safer option than password managers. And it's absolutely outrageous to say this: But not every single account you have needs a unique password. Just ones which can actually allow someone to impersonate you meaningfully, cost you money, or gather sensitive data about you. Response to @palata because of rate-limiting: The problem is people tend not to only put unimportant accounts in their password…
I do post-it notes and a couple of master passwords for things I don't care about, so I don't disagree. I need to make 2 points though. 1, enough 'non-sensitive' data can eventually become sensitive when taken as a whole, and 2 post-it notes are less secure if they are at a place of employment, think teachers. Maybe the best option is one of those physical access password managers like KeePass
Re: Lastpass Security Incident
#25Re: Lastpass Security Incident
#26Someday one of these password managers is going to be hacked wide open and it is NOT going to be pretty.
Most of them are build without having decrypted passwords or keys for them on server, so attacker would need to get to the point where they can craft malicious update to the client (or exploit the client)
Re: Lastpass Security Incident
#27it's so baffling to me that people give ALL their password to a third party, commercial, organization...
Re: Lastpass Security Incident
#28Great, now I'm going to have to rename my dog.
Re: Lastpass Security Incident
#29Re: Lastpass Security Incident
#30it's so baffling to me that people give ALL their password to a third party, commercial, organization...
Anything that gets them to use unique, strong passwords for everything vastly improves their general security, even if they are using a third party, commercial organization.