2023 was a record-breaking year for cybersecurity in a bad way. Ransomware payments hit a record high of $1.1 billion, which is likely to…

          • milicent_bystandr@lemm.ee
            link
            fedilink
            arrow-up
            0
            ·
            6 months ago

            And it hides file names and sizes by splitting things up, which puts one extra layer of difficulty for someone trying to find my passwords file to target. I have a much stronger password on the syncthing directory than my normal type-each-time password to open keepassxc.

  • zifk@sh.itjust.works
    link
    fedilink
    arrow-up
    0
    ·
    6 months ago

    +1 For KeepassXC, I use it in combination with syncthing to have my passwords available on all devices.

  • red_rising@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    6 months ago

    Any options on StrongBox? It seems like a good option but they don’t quite have the reputation that others have, despite being around since 2017.

    • temmink@feddit.de
      link
      fedilink
      arrow-up
      0
      ·
      6 months ago

      StrongBox is just a client that uses keepass databases. I think it integrates well when using Apple devices and you can still use your databases on other platforms.

      • red_rising@lemmy.world
        link
        fedilink
        arrow-up
        0
        ·
        6 months ago

        Ah thanks. Ya it’s Apple only but I like how it doesn’t sync to a central server but will still sync between your devices across your local network. Seems to minimize a lot of attack surface.

    • ebits21@lemmy.ca
      link
      fedilink
      English
      arrow-up
      0
      ·
      edit-2
      6 months ago

      Strongbox is great, but expensive. I settled on KeePassium instead mostly based on cost.

      • red_rising@lemmy.world
        link
        fedilink
        arrow-up
        0
        ·
        6 months ago

        It’s only $20 a year or $80 for life. I feel like that’s a fair price to support the developers.

        • ebits21@lemmy.ca
          link
          fedilink
          English
          arrow-up
          0
          ·
          6 months ago

          It’s not unfair, but for my use case there are cheaper or free alternatives that work really well.

          And I’m Canadian so it’s a bit more than that dollar wise.

  • navi@lemmy.tespia.org
    link
    fedilink
    arrow-up
    0
    ·
    6 months ago

    I really enjoy 1Password for easy vault sharing between family members. I was able to get my (not so technically literate) siblings and dad onto my family plan. Baby steps!

  • ebits21@lemmy.ca
    link
    fedilink
    English
    arrow-up
    0
    ·
    edit-2
    6 months ago

    I use Bitwarden for passwords. Just works so well.

    KeepassXC and KeePassium for TOTP codes. I keep the database in the cloud but sync a key with Syncthing that’s needed to unlock the database on the devices themselves.

    • Lem453@lemmy.ca
      link
      fedilink
      arrow-up
      0
      ·
      edit-2
      6 months ago

      Locally hosted bitwarden (vault warden) that is only accessible on your local network is the way to go. When a new sync is needed away from home, wireguard VPN to connect back in makes everything nice and secure. Otherwise most of the time the vault is cached to the device locally so you don’t need to phone home to access passwords.

  • alecto@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    6 months ago

    My favorites:

    • Proton Pass
      • Pros: Aliases, Proton integration
      • Cons: No passkeys (yet), native desktop apps in beta
    • 1Password
      • Pros: SHH agent integration!
      • Cons: Least open
    • Bitwarden
      • Pros: Most open, self hosting option
      • Cons: least polished user experience
    • milicent_bystandr@lemm.ee
      link
      fedilink
      arrow-up
      0
      ·
      6 months ago

      And I do keepassdx on Android, with a (phone-specific) database synced with syncthing


      P.S. syncthing is fantastic: I hope more people consider hosting discovery servers and especially relays

  • bloubz@lemmygrad.ml
    link
    fedilink
    arrow-up
    0
    ·
    edit-2
    6 months ago

    Indeed I have 1Password (was the best proprietary) and I’m switching to Proton Pass. This year they lacked features but their integration of their Simple login email aliases is game changer

  • pathief@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    6 months ago

    I’ve been using Proton Pass since it launched and I think it’s really really good.

    Positives:

    • Nice integration with both desktop and mobile
    • Integrated in the proton suite, which I was already using
    • Allows you to generate an email alias for each login automatically. Websites will never have your real email and you can easily generate a new alias if one has been compromised
    • Supports 2 factor authentication via TOTP, works really well

    Negatives:

    • No passkey support yet
    • Free version only supports like 5 email alias
  • RememberTheApollo_@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    6 months ago

    I get a good reason to stay away from lastpass is their dealing with getting hacked. Valid. However, bitching about not getting to use all the paid features as a free user is ridiculous.

    • BrikoX@lemmy.zipOP
      link
      fedilink
      English
      arrow-up
      0
      ·
      6 months ago

      In a vacuum, maybe. But there is a difference between adding new features to a paid plan and removing features from a free plan.

  • guillem@aussie.zone
    link
    fedilink
    arrow-up
    0
    ·
    6 months ago

    If you are into the command line, pass is also neat. You can even have your keys in a git repo and access it with a FOSS Android app (requires some dedication to set it up). It’s very useful to feed passwords to scripts without hardcoding them in the source.