TonZaga
Straight
Been using BW myself for a couple months and I love it
I believe I run a relatively simple life but it turns out I put about 80 entries in it!
I use and love 1Password, they have passkeys coming soon1Password is also a great option. Safari/Keychain is going to suffer from a lot of the same issues I pointed out above about Chrome.
https://bitwarden.com/help/import-from-lastpass/Quality post! I use LastPass but going to change due to the price hike and breach. Not looking forward to migrating all my pwds.
It's too bad, they used to be awesome when they were a $12 a year company. Then they turned into a fucking tire fire.https://blog.lastpass.com/2022/12/notice-of-recent-security-incident/
In case the messaging has been too soft: You should absolutely NOT be using LastPass under any circumstances. It's a negative freeroll where the cap on damages is whatever an "authorized user" can accomplish with your accounts.
The company is not likely to survive this breach.
Been using Bitwarden for several years, I think it's fantastic, and it's free, and it's open source, and you can host it yourself if you know what you're doing, and... it's not LastPass.I currently have LastPass, and am finally going to switch to another manager.
Between BitWarden and 1Password, need to decide which. Open to suggestions
Bitwarden FTWI currently have LastPass, and am finally going to switch to another manager.
Between BitWarden and 1Password, need to decide which. Open to suggestions
Ditto.Bitwarden FTW
Moved from 1Password a few years ago and haven’t looked back at all……..
I was a 20 yr user of 1P before the switch too…… their subscription ‘scheme’ was the nail in the coffin for me
Done and done. Thank you for this heads up, very much appreciated. About to read the article.Just to stay vigilant on this topic, I was just made aware of this Bitwarden issue but you can fix it by accessing your web-based Vault and going to Settings - Security - Keys and upping the default Hash from 100,000 to something higher, like 600,000.........
https://portswigger.net/daily-swig/bitwarden-responds-to-encryption-design-flaw-criticism
Oh really? Very good to know as well. What is the lowest we should safely go if things that to slow down?Keep an eye on performance, as added security sometimes comes at a cost.
If you have issues, slowly start dropping that number by~50k until things feel smooth/acceptable again.
The article says 600,000 is the new best practice, I upped mine to that and it seems fine......Oh really? Very good to know as well. What is the lowest we should safely go if things that to slow down?
Sounds good. That's what I upped mine to as well.The article says 600,000 is the new best practice, I upped mine to that and it seems fine......
Been a happy LastPass user for years, but after this last debacle, and especially finding out technical details of all the bad choices (that we know of) they had made to protect our data, I too will be moving to BitWarden soon.
If your settings were correct and you had a strong password there’s pretty little chance they will brute force your vault.https://blog.lastpass.com/2022/12/notice-of-recent-security-incident/
In case the messaging has been too soft: You should absolutely NOT be using LastPass under any circumstances. It's a negative freeroll where the cap on damages is whatever an "authorized user" can accomplish with your accounts.
The company is not likely to survive this breach.
The thing is they already have all the vaults1Password fan for years, but slowly migrating to Apple’s Keychain Password functionality.
As for LastPass- get out.
https://techcrunch.com/2022/12/22/lastpass-customer-password-vaults-stolen/
https://techcrunch.com/2023/01/24/goto-customer-backups-stolen-lastpass/
The thing is they already have all the vaults
Leaving won’t change anything or secure your credentials
Some stuff can be seen in the vault In plain text
If you wana secure anything you need to rebuild your vault in BitWarden for example with new master PW and change all stored credentials if you are worried
Yep. Exactly.The thing is they already have all the vaults
Leaving won’t change anything or secure your credentials
Some stuff can be seen in the vault In plain text
If you wana secure anything you need to rebuild your vault in BitWarden for example with new master PW and change all stored credentials if you are worried
That’s cool with the folders I haven’t played with BW yet but that’s a great method to go reset themI recently moved from lastpass to bitwarden. After initially moving all my passwords over, I created a new folder called "Updated 2023", and started changing all my passwords. When I updated a password, I moved that one to the Updated folder. I'm slowly working my way through all my passwords, doing a few a day. Once I'm done, I'll reorganize everything into proper folders
Like LastPass? You move and start over. But by and large, especially if you store them locally, it shouldn’t happen.What if your password manager software is compromised ?