Post AQuFJBfWmvF6VNDGq0 by Wheresatom@twit.social
(DIR) More posts by Wheresatom@twit.social
(DIR) Post #AQuCryYzCqY68F3AZ6 by Wheresatom@twit.social
2022-12-23T15:46:10Z
0 likes, 0 repeats
Man this Lastpass stuff is terrible. I moved to another password manager almost 2 years ago but never went thru and deleted my Lastpass. Now I am logged into my Lastpass trying to change each individual password it has access to. The web vault barely works. I can't view details of any of the entries in what I am guessing is a Chromebook compatibility issue. What a trash product. I swore by Lastpass for years, and convinced many family members to start using it. I feel guilty for that now.
(DIR) Post #AQuCrz0dY2fPVzzFfE by leo@twit.social
2022-12-23T17:45:16Z
0 likes, 0 repeats
@Wheresatom This #Lastpass thing is SO disappointing. Yes your vault is still encrypted, but the worst thing that can happen to a password manager is to lose control of the vaults. We still use Lastpass Enterprise at TWiT. We enforce strong passwords, two factor, and I use a hardware key for that, so I think we're probably ok, but still we are going to have to investigate a change.I moved to our newer password sponsor, Bitwarden, two years ago. At least THEY encrypt all the metadata.
(DIR) Post #AQuCwM7PZQ6qLUEzLc by leo@twit.social
2022-12-23T17:46:07Z
0 likes, 0 repeats
@Wheresatom I look forward to Steve Gibson's thoughts about #Lastpass on the next Security Now Jan 3!
(DIR) Post #AQuFJBfWmvF6VNDGq0 by Wheresatom@twit.social
2022-12-23T18:12:39Z
0 likes, 0 repeats
@leo Good point. I sure hope he rolls out a calming blanket telling us it will be okay. 🤞
(DIR) Post #AQv1m3bCfLAhfu1RIW by gc@mastodon.au
2022-12-24T03:15:40Z
0 likes, 0 repeats
@leo @Wheresatom the bug where lastpass offered passwords from the previous page made some wonder what other surprises they had
(DIR) Post #AQv7bcsJllePcZR8jY by gc@mastodon.au
2022-12-24T04:21:00Z
0 likes, 0 repeats
@leo @Wheresatom If account recovery information was save in Lastpass it would be a good idea to check if those fields were saved encrypted. Some users may not be aware there are unencrypted fields in the vault.