LogMeIn acquires Lastpass
241–250 of 443 posts
Re: LogMeIn acquires Lastpass
#242Re: LogMeIn acquires Lastpass
#243Huh. Gotta admit, I'm rather distressed by this, but I'm trying to think through it logically. * They still don't have access to my raw passwords. Everything's already encrypted before it gets to them, and they don't have the key. They just store the encrypted data. * They however do control access to the account. This means there's a point where they get all sorts of data on me, and while I personally don't mind, I…
> "They however do control access to the account. This means there's a point where they get all sorts of data on me, and while I personally don't mind, I must admit I felt a bit safer when I thought it was a smaller, purpose-built company managing things." I've never really understood the appeal of account-based password managers. It was a startup and it needed a business model, sure, so from the company's perspectiv…
It's true for any level of password management. KeePass is less secure but more convenient than simply memorizing each of your long, secure passwords. Choosing less secure passwords or repeating passwords is more convenient than memorizing long, unique passwords.
Finding the right balance of convenience & security is critical for securing the myriad accounts of the "masses." We know that the average person isn't going to bother memorizing long unique passwords - even the most security conscious person won't do that (except for maybe a handful of super-critical passwords).
Re: LogMeIn acquires Lastpass
#244I've been using an excel workbook that is stored in an encrypted image as my ways to manage passwords. How are these services that people mention in the comments, better at doing the same? Is there a better way someone has come up with to manage passwords where you don't have to rely on these services?
- Excel has larger attack surface than purpose-built password managers. Have you checked Excel doesn't leave behind recovery copies of your passwords file in c:\windows\temp ?
Re: LogMeIn acquires Lastpass
#245Earlier quoted context omitted.
Agreed. Logically, something like KeepassX ( https://www.keepassx.org/ ) is the most logical, secure choice. I think a lot of people pick Lastpass and such for the convenience of browser integration, but I don't think that's necessarily impossible with keepassx - just so happens that nobody is really working on it (which is a shame).
An important thing is that LastPass works on mobile.
I don't have a BlackBerry anymore, though. Now might be the time to jump ship.
Re: LogMeIn acquires Lastpass
#246I'd really love for some objective person to weigh in about why all the negative reaction to this. Is LogMeIn a terrible company? I have not used either LogMeIn or LastPass.
Re: LogMeIn acquires Lastpass
#247- Zunächst, we (LogMeIn/LastPass) have no plans ... - Zweitens, this acquisition provides us ... - Seitdem, LastPass has grown by leaps ...
Re: LogMeIn acquires Lastpass
#248The zip contains
* encrypt.sh
* payload, a folder containing subfolders, password text files and other personal information.
To "unlock", extract the zip.
To "lock", run encrypt.sh.
Make sure that the extracted data won't get backed-up at any time. I just came up with this a few days ago. Let me know if you have any concerns about this.
Here's the encrypt.sh: http://pastebin.com/DudVinms
Re: LogMeIn acquires Lastpass
#249Re: LogMeIn acquires Lastpass
#250This is pretty terrible news. It would have been need to see LastPass get acquired by a company like AWS but LogMeIn doesn't really have the reputation required to ask people to trust them with all their passwords. Also, the valuation also seems low to me. Maybe LastPass was having trouble generating recurring revenue. It seems like going public would be a better route for security companies but maybe the revenue was…