More than $35 million has been stolen from over 150 victims since December — ‘nearly every victim’ was a LastPass user::Security experts believe some of the LastPass password vaults stolen during a security breach last year have now been cracked open following a string of cryptocurrency heists

you are viewing a single comment's thread
view the rest of the comments
[–] 57 points 2 years ago (7 children)

instead of using a password manager managed by a PRIVATE ENTITY people should start using bitwarden ... its opensource, free and much more secure and reliable

  • source
  • hideshow 14 child comments
  • [–] 19 points 2 years ago (2 children)

    But who is running the bitwarden server? Bitwarden the private company.

    I self host vault warden, but it's really not something everyone can do.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 6 points 2 years ago (1 child)

    How does bitwarden encrypt their passwords? Im just realising that since it works on both my laptop and phone with no configuration it can't be overly nuanced

  • source
  • parent
  • hideshow 2 child comments
  • [–] 13 points 2 years ago (1 child)

    It's encrypted on the client and bitwarden themselves can't decrypt it (we assume, but there have been audits that seemed to confirm that).

    If you want to you can just run your own server then they can't see the traffic at all.

  • source
  • parent
  • hideshow 2 child comments