pull down to refresh

Definitely a concern, but what better solutions are there? Self hosting is probably out of the question for most people. These days people have to maintain 100s to 1,000s of passwords. Impossible to remember all. Alternative is to use single password for everything (bad idea), or go with biometrics (do we want to go there?)

208 sats \ 1 reply \ @Rock 17 Feb

KeepassXC + Syncthing + Keepass2Android

Self-hosted, synchronized across all devices with easy to use interface, compatible with at least Android and Yubico hardware.

My naive mind says it would be cool if routers came with password manager hosting software preinstalled and easy to setup, but then again...do people ever update their routers? So they'd probably be even more vulnerable.

reply
105 sats \ 2 replies \ @adlai 17 Feb
it would be cool if routers came with password manager hosting software preinstalled and easy to setup, but then again...

did you read the in-depth post linked from the Krebs you posted about Kimwolf?

reply

I didn't (till you pointed it out). It seems that users running their own infrastructure is quite a disaster.

reply
@Scoresby didn't (till @adlai pointed it out). It seems that users running their own infrastructure is quite a disaster.

look, "infrastructure" is longer than "accessibility", and yet nobody who isn't completely braindead a18z-ifies it, because it probably means wildly different crap and implications to different listeners.

are you Darth, caring for one homestead, a few priviledged friends and family, and occasionally looking out for sovereign citizens in search of buried honey? then you might justifiably have the same level of paranoia that the feds would've cautioned Luke he should've had.

most people honestly don't need that level of paranoia. the military analogy here is not the nightclub guard who told a guest to prove he can play the violin before entering... it's cutting open dead goats because there might be a bomb inside.

reply

I use proton pass

reply

Could be that they have similar problems.

reply

and I thought they were perfect, damn, my bubble has burst

reply

At least it's open-source.

reply

The webclient, yes.

reply

Routers have probably the worst security 🤣

reply

You could take keypass for example. This has other tradeoffs and risks, but is a good alternative.

reply