70
submitted 23 hours ago by tfm@europe.pub to c/privacy@lemmy.ml
top 19 comments
sorted by: hot top controversial new old
[-] huquad@lemmy.ml 3 points 9 hours ago

Always two there are. No more, no less. The one they know, and the one they don't.

[-] shortwavesurfer@lemmy.zip 10 points 16 hours ago

I'm glad I've been using a password manager for several years now.

[-] mac@lemm.ee 2 points 10 hours ago

Yeah I think I've got 600 distinct logins in my bitwarden at this point, lol.

[-] furrowsofar@beehaw.org 31 points 22 hours ago* (last edited 22 hours ago)

I wonder how much of this stems from two stupid IT policies. For decades users have been told to not write down passwords and to change them regularly. The result of this policy is to use a small number of password variations that one reuses. Then IT complaims about it.

The better plan has always been to use long random passwords that you never reuse and write them down by some method like a password manger and only change them rarely for example when they may be compromised,

[-] psud@aussie.zone 2 points 7 hours ago

My workplace has finally gone to passphrases and 1 year password life, which is nice as it's a password I often need to type, so I'd rather 20 easy to type and memorise chars than 16 random

[-] HubertManne@piefed.social 5 points 18 hours ago

I remember asking my company if they have official password management software in my job before my last job. They did not. I can't believe we have all this specific software to be used at the company but they don't put some time to identify what they want employees to use for this. Funny thing is security teams are such big deals but I think they actually don't want to get involved in case it does not work out.

[-] furrowsofar@beehaw.org 1 points 16 hours ago

Lot of security is theater. IT doing a CYA thing.

[-] Blue_Morpho@lemmy.world 24 points 22 hours ago

Which half? The hunt half or the er2?

[-] Strobelt@lemmy.world 15 points 21 hours ago

What parts? I only see "The **** or the ***?"

[-] Dima@feddit.uk 11 points 22 hours ago

The "correcthorse" part

[-] Jumuta@sh.itjust.works 15 points 20 hours ago

yeah because half of them are 1234

[-] nothacking@discuss.tchncs.de 13 points 20 hours ago
[-] ArtificialHoldings@lemmy.world 7 points 19 hours ago

I would do the word jumble suggested by xkcd, but so many websites require numbers, special characters, and disallow spaces that it would be impossible to remember unique passwords between those sites. Ironically I end up in a much weaker password ecosystem because I re-use the nearly-same password over and over again so I'm not constantly requesting a reset.

[-] tfm@europe.pub 17 points 19 hours ago

Why not use a password manager?

[-] mnemonicmonkeys@sh.itjust.works 3 points 11 hours ago

Single point of failure and a separate entity has all of your passwords and you have to continue paying them or lose access to everything. Sounds like a terrible idea to me

[-] shadshack@sh.itjust.works 3 points 10 hours ago

There are password managers you can self host. Bitwarden being one of them. Secure it as much as you want and keep off-site encrypted backups if you're worried about a single point of failure.

[-] ArtificialHoldings@lemmy.world 1 points 9 hours ago

I'm split between a work pc, mobile, and home pc... It could work for 90% of cases. I never trusted a password manager though.

[-] psud@aussie.zone 4 points 7 hours ago

KeePass doesn't rely on any third party, and if you choose to use a third party file storage to hold your password vault, it's encrypted

[-] 4am@lemm.ee 8 points 19 hours ago

BitWarden now supports passkeys and has a free 2FA app.

No excuses not to be as secure as possible anymore.

this post was submitted on 18 Mar 2025
70 points (100.0% liked)

Privacy

35760 readers
355 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS