In November 2022, the password manager service LastPass disclosed a breach in which hackers stole password vaults containing both encrypted and plaintext data for more than 25 million users. Since then, a steady trickle of six-figure cryptocurrency heists targeting security-conscious…

  • quams69@lemmy.world
    link
    fedilink
    English
    arrow-up
    11
    arrow-down
    3
    ·
    1 year ago

    You’re telling me it’s a bad idea to aggregate all of your passwords through a third party? Who could have seen this coming

    • rastilin@kbin.social
      link
      fedilink
      arrow-up
      3
      arrow-down
      1
      ·
      1 year ago

      Apparently very few people, somehow. Because the internet was filled with people explaining how it was actually much safer than writing them down in a book because “what if someone goes through your desk?”. I’m told it’s much safer to entrust your passwords to a third party over the internet.

      • CaptainAniki@lemmy.flight-crew.org
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        The irony is that almost all digital theft right now is on the server side and that password book could categorically be much safer than an online service.

        I’ve been in IT for 20 years and I still don’t see the advantage of a password manager if you use passphrases with DFA.

        I never need to log into a secondary service to get access to the first. All passphrases are unique to each site and they come from my brain not from a copy-paste.

        • GreenBottles@lemmy.world
          link
          fedilink
          English
          arrow-up
          8
          arrow-down
          1
          ·
          edit-2
          1 year ago

          Id like to see you manage the 5000 different passwords I have in my manager with your brain

          • CaptainAniki@lemmy.flight-crew.org
            link
            fedilink
            English
            arrow-up
            1
            ·
            1 year ago

            It’s easy peasy. I don’t have to remember a single password – just the system that I use to make passwords. The only time the system breaks down is my work accounts because we do SSO about as well as you’d expect.