36
Password reuse is rampant: nearly half of observed user logins are compromised
(blog.cloudflare.com)
c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.
THE RULES
Instance Rules
Community Rules
If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.
Learn about hacking
Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected]
Notable mention to [email protected]
While I understand that password reuse is a problem I also understand that remembering 50+ passwords, because literally everything requires you to make an account, is impossible. And some of these password managers seem shady themselves. And if said manager needs a password that means someone only needs the one password which puts us back at square one.
These days I've resorted to physically writing my passwords down because I straight up don't trust anything that connects to the internet anymore for this kind of information. Like some lame puzzle in a video game where you have to look around the room for the password. But it still feels safer than anything that's connected to the internet.
How about KeePass then? It's an encrypted local database file you can sync/backup how and where you want. There are clients to open/edit it for Android, Linux and even Windows. The Android version can use fingerprint, if your phone has this hardware.
My main issue is that it doesn't solve the "borrowing someone's computer" problem. With a hosted password manager, you can login to an online vault to get your passwords, but that's not an option with keepass.
That's a pretty rare use case though, but it is something I run into periodically.
I've just set up vaultwarden recently and at least for that solution I can just log into my selfhosted database and grab them from there, but the inconvenience is still enough to put most people off.