Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Post
  • Reply
coconono
Aug 11, 2004

KISS ME KRIS

Hippie Hedgehog posted:

I use Keepass with one of the major cloud storage providers. It works, that's about all I can say.

The andoid app was good when I used it 3 years ago. The Firefox addon "kee" is decent but it's annoying to set up a browser add-on just to get password autofill. On iphone, I use Strongbox which is well compatible with the database and it works fine.

Same about KeePass. Its a local encrypted file, just let your cloud backup solution grab it. Share it with your friends and only open it in Read Only mode. The file is decently encrypted enough that if the poo poo was compromised, it'd take a national security entity to unravel its contents. And if they want it that drat bad, they can have it.

As for mobile devices, Apple's icloud is ok if you keep the 2factor stuff enabled and audit your devices and password list periodically. Yes blah blah Apple's been hit before and they're real bad about disclosure. So has every major cloud provider in some form or another. Manage your risk accordingly. Also I really like the automatic security alerting if a password has been exposed. Android has similar functionality but its hidden a few more menus down.

As a general rule, if its important enough to gently caress you over, enable 2factor. TBH, most of the poo poo I see in the wild is re-used passwords and targeting bruteforcing(with enough datapoints password guess can fall into statistical certainties). The security incident portion of my job decreased tenfold when we made 2factor a hard requirement for data access. If you're worried about sim cloning(yes you should be, its $45 and 5 minutes with an unattended phone), use email or a MFA app. Just make sure you look over your poo poo once in a while.

Adbot
ADBOT LOVES YOU

  • 1
  • 2
  • 3
  • 4
  • 5
  • Post
  • Reply