Игра про придумывание пароля, но после каждого правильного ответа появляется новое правило допустимости пароля, которое тоже нужно соблюсти, причём с учётом всех предыдущих.
Начинается с относительно знакомых требований, но быстро скатывается в концентрированный упорин.
Could anyone give me recommendations for a password manager? Google is basically useless now and I don't know anywhere else to ask. 😅
So far, I've never found one that I trust enough to use. I do understand the importance but I'm extremely, incredibly hesitant to hand over my passwords to a 3rd party program. I'm even more hesitant to use randomly-generated passwords that I can't memorize as a backup.
All that being said, here's what's important to me:
Transparency - public audits, published whitepaper, and/or open source.
Export to a printable format. I don't have reliable backups, so this is a must-have!
Works with desktop & mobile Firefox.
Works on Windows & Linux (I regularly use both).
Works on Android - not critical, but would be really helpful.
Can work offline (I don't trust any sync server to stay online).
For everything else, I'm more flexible. I don't mind paying a small amount for a better / more trustworthy option, either.
Any suggestions, recommendations, or just boosts are appreciated! Thanks so much in advance! 💙
So here’s the problem with iCloud Passwords by Apple.
As long as the url’s domain, username and password is the same, Apple treats it as the same credential. Even when they are different systems.
Then when you have OTP, it becomes like this.
How am I to know which OTP is for which system?
You can’t even split them.
Huh. iOS 17 allows you to keep using your old passcode for 72 hours after you’ve changed it.
That seems like a non-ideal thing to do by default. And it certainly seems like something that should be highlighted really prominently when changing the passcode 🤔
Hi, I've kind of stopped using kbin, the reason being that every time I go on this website, it asks me to relog in, even though I've selected remember me last time that I did log in....
Their latest move just shows they care more about their reputation and rather put responsibility and blame on their customers than solving the very serious security issues they have.
If you still use LastPass migrate asap to another password manager and change the secrets you have been storing in LastPass.
As hacks become more sophisticated, our need for more complex passwords is growing. But even using password managers can feel like work, ZDNet explains what passkeys are and how using them can make accessing accounts and software much easier.
I had a super obvious idea. Why don't password managers guard against spoofing by checking whether the hostname they have saved matches the site you are trying to enter the credentials into? I was spoofed a month ago and have been thinking about it since. Does anyone know if that's ever been proposed to a browser?
It's so obvious I assume I'm not the first person to think of it, but I cannot find anything online. Links appreciated.
No pity from my side for using #cloud-based #password services in the first place. Sorry, it's your own fault when you prioritize convenience over #security. Security experts were warning you before and you ignored it. 🤷
Not allowing users to see what they type counts in aggravation of sentencing.
Blocking paste, making us type in blind and then HAVING A TIMEOUT AFTER WRONG ATTEMPTS should be grounds for whipping the entire dev team and everyone above them in the org chart.
I really wish @1password had a concept of tabs. When i'm trying to reference the structure of one entry to recreate it on a new one, it's a real ball-ache having a non-tabbed interface.
@case2tv I chose #Enpass since it literally runs on everything* - espechally #Android and #Linux and doesn'r equire some subscription or charges people for the "privilegue" of self-hosting, like #BitWarden.
It's also #TechIlliterate-friendly.
*Okay it doesn't run on #BSDs and #Unix except macOS & iOS, but then again:
People who daily drive #OpenBSD, #FreeBSD or #NetBSD are usually #TechLiterate enough to basically setup their own #password storage system from scratch & sync and backup stuff.
Boost if your parent or grandparent keeps a physical printed out list of all the usernames and passwords for various websites and software applications.
Syarat 🚨
Password harus memenuhi syarat2 sebagai berikut:
Minimal 8 karakter
Kombinasi huruf besar kecil, angka & karakter spesial
Buat password dengan kata2 yang unik
Jangan gunakan tanggal lahir, kota domisili, nama anak, nama ortu, nomor telepon dll yang mudah ditebak
Contoh:
P3m@d4m_Ke8ak4raN!
Urc8M|W87BY%Dd@K
Password Manager 🚧
Jika syarat2 diatas dianggap susah/ribet, kalian bisa gunakan password manager untuk menyimpan password2 yang ribet itu. Password manager bisa autofill user pass sesuai dengan apa yang kita simpan. Bisa juga untuk generate password yang secure.
Macam2 password manager antara lain:
1Password
Bitwarden (open source)
Dashlane
Keeper
NordPass
Enpass
KeePass (open source)
Ekstra 🔑
Jika memungkinkan, ganti password secara berkala
Jangan tulis/simpan password dinotepad
Jangan tulis & tempel password dimonitor kantor
Jangan gunakan satu password untuk semua akun online
I want to thank everyone who has replied so far to my post about a password app for MacOS and iOS. I haven't had the time to reply to everyone because I'm super busy for the next few days, through the weekend, but I have saved all of the links you have sent to me into an org-mode project in Emacs to review later on. 🙃
One more post I've been looking to replace 1Password with something more #FOSS friendly. So, it has to be on Mac AND iOS, it has to have Face/TouchID, and it should do iCloud sync as well as syncthing or another. Can contain more than passwords (like files)
I haven't tried it yet, so I'm appealing to some Mac people out there: Do you guys know? Is it any good? Is it here to stay? Does it do these things? Opinions?
Kbin not saving the account, asks me to relog in after little time
Hi, I've kind of stopped using kbin, the reason being that every time I go on this website, it asks me to relog in, even though I've selected remember me last time that I did log in....