Ditching LastPass... (Evaluating Password Manager Security)

Поделиться
HTML-код
  • Опубликовано: 5 авг 2024
  • 🔗 Links Mentioned:
    [1] Lastpass: Hackers stole customer vault data in cloud storage breach: www.bleepingcomputer.com/news...
    [2] A Breach at LastPass Has Password Lessons for Us All: www.nytimes.com/2023/01/05/te...
    [3] Security Now: twit.tv/shows/security-now
    [4] Hackers stole encrypted LastPass password vaults, and we’re just now hearing about it: www.theverge.com/2022/12/22/2...
    [5] LastPass breach: The significance of these password iterations: palant.info/2022/12/28/lastpa...
    [5.5] Password Storage Cheat Sheet: cheatsheetseries.owasp.org/ch...
    [6] Security Now! Leaving LastPass: www.grc.com/sn/SN-904-Notes.pdf
    [7] Name, Username, Folder name and URL all sent unencrypted to LastPass: / name_username_folder_n...
    [8] Protecting against a password manager breach: part 1: justinpagano.substack.com/p/p...
    [11] Yes, It’s Time to Ditch LastPass: www.wired.com/story/lastpass-...
    © Icons were sourced from Flaticon, all credit goes to its authors.
    🐕 Follow Me:
    Twitter: / collinsinfosec
    Instagram: / collinsinfosec
    Cybercademy Discord Server: / discord
    🤔 Have questions, concerns, comments?:
    Email me: grant@cybercademy.org
    🎧 Gear:
    Laptop (Lenovo X1 Carbon Ultrabook 6th Gen): amzn.to/2O0UfAM​​​​​
    Monitors (Dell D Series 31.5” D3218HN): amzn.to/2EXlgRF​​​​​
    Keyboard (Velocifire VM01): amzn.to/2TEswfd​​​​​
    Headphones (Audio Technica ATH-M40x): amzn.to/2F4Tvq6​​​​​
    Work Monitors (Dell U4919DW UltraSharp 49 Curved Monitor): amzn.to/3yQmDhM
    Desk (FLEXISPOT EW8 Comhar Electric Standing Desk): amzn.to/3S9OxvG

Комментарии • 39

  • @RealCyberCrime
    @RealCyberCrime Год назад +47

    it sounds like some sort of a sick joke but storing your password in plaintext on notepad is literally safer than many other ways of storage lol

    • @paramkalaria9020
      @paramkalaria9020 Год назад

      correct 🥰

    • @collinsinfosec
      @collinsinfosec  Год назад +10

      It does sound crazy, but it's valid.

    • @haroon1705
      @haroon1705 Год назад

      @@collinsinfosec I use veracrypt to store any sensitive info, I feel like such information shouldn't be as accessible, or at least locally stored. Although I understand the need for accessibility especially for enterprise companies

    • @ArcNine9Angel
      @ArcNine9Angel Год назад

      Ha, I knew it!

    • @yoboo8357
      @yoboo8357 Год назад +2

      that's why you use keepass

  • @CIIVIEIVIA1
    @CIIVIEIVIA1 Год назад +2

    nice video, going through a sec+ course and Pen Tester course, thanks for the good info.

  • @Crush3dI
    @Crush3dI Год назад +3

    It just shows again that research is your best friend. Especially for security applications

  • @BD90..
    @BD90.. Год назад +8

    We need to stop saying password too. We need to use passphrases. We can create great and complicated combination of characters if we create a long sentence of characters and use the first characters of each word. We can also add a special character between each letter. Alternate those letters with uppercase and lowercase and even use a different language too. I prefer to leave the bad guys only brute force to as the other way in besides knowing the password

  • @guilherme5094
    @guilherme5094 Год назад +2

    👍Thanks!

  • @daveterra4778
    @daveterra4778 Год назад +1

    Hi I purchased your course on the 17-18 of Feb 2023 but did not receive any email confirmation, can you please help ?

  • @user-kv1uq5bz7u
    @user-kv1uq5bz7u Год назад +1

    What is the most important programming language used in cybersecurity?

  • @ImTimmy228
    @ImTimmy228 Год назад +1

    Maxwell the best cat

  • @nawazzz_23
    @nawazzz_23 Год назад +1

    Hi Brother, Is it a good idea to pursue master's abroad in cybersecurity if one wants to start his/her career in cyber sec? what are your thoughts on this

  • @DeveloperJourneyVlogs
    @DeveloperJourneyVlogs Год назад +2

    keepass, u sacrifice convenience tbh but its the safest password manager imo

  • @zullkarnain1963
    @zullkarnain1963 Год назад

    Sir the video is not playing to me

  • @_bass3xe838
    @_bass3xe838 Год назад +1

    Securing passwords is a hopeless cause, it’s about an effective metric as securing a the confidentiality of a username. So hearing lastpass hacked again is hearing another shadow API has been used to pilfer sensitive information. *numb to the alerts.

  • @kalilinux1515
    @kalilinux1515 Год назад

    Why windows and on Linux

  • @0xwxe663
    @0xwxe663 Год назад +2

    Bruh I have a flash drive with and encryption that I use to store information

  • @alexparakan
    @alexparakan Год назад

    Ngl you look cuter with a mustache 😅

  • @GuilhermeHenrique-mh7qq
    @GuilhermeHenrique-mh7qq Год назад +2

    I think there was a big delay between your video and what happened with Lastpass. The video is late, many Lastpass users must have already migrated to other services (online or offline) and if they haven't done so yet, I don't know what they are waiting for.

    • @collinsinfosec
      @collinsinfosec  Год назад +2

      Fair point. I had this video in my archive for a while. Unfortunately, there were some edits I had to do over the course of a few weeks.

  • @elmehdiezziar
    @elmehdiezziar Год назад

    🛡️ Security 🛡️

  • @TedInATL
    @TedInATL Год назад

    Architect is a verb now?

  • @nssSmooge
    @nssSmooge Год назад

    KeepassXC - keep passwords locally saved :)