T
10

Unpopular take: password managers are not the silver bullet everyone claims

I used LastPass for 5 years but switched to a plain text file on an encrypted USB after their 2022 breach. Sure, it's old school but that file never leaked and I can access it offline anywhere, even on a job site with no cell signal. Has anyone else found that the extra convenience of a cloud manager actually adds risk?
2 comments

Log in to join the discussion

Log In
2 Comments
dixon.rose
And that 2022 breach just proved that if a password manager gets popped, every single one of your passwords is up for grabs at once. Cloud convenience is a trade-off most people don't stop to think about until it's too late.
4
anthony165
Yeah, exactly. That's the part nobody wants to talk about. People act like a password manager is some magic bullet but it's really just a single point of failure dressed up in convenience. If someone gets access to your master password or finds a way into their cloud backend, you're done. All your eggs in one basket, plain and simple. And the thing is, most of those services store everything encrypted but they still hold the keys on their servers. So even if they claim zero-knowledge, you're still trusting them not to screw up. I'd rather just write my important passwords down on paper and keep it in my wallet than hand everything over to one company.
8