[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

Stop using LastPass RIGHT NOW Yet another exploit found. Fourth

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 71
Thread images: 12

File: LastPassOwnedAgain.png (135KB, 571x336px) Image search: [Google]
LastPassOwnedAgain.png
135KB, 571x336px
Stop using LastPass RIGHT NOW

Yet another exploit found. Fourth one this week
This piece of shit is compromised and can no longer be trusted
>>
File: 1488746990856.jpg (45KB, 720x720px) Image search: [Google]
1488746990856.jpg
45KB, 720x720px
>>59579199
I can't wait for C fags to defend this.
>>
>>59579199
I hope he cleaned up after himself
>>
>>59579199
Feels good to use an offline password manager.
>>
>>59579199
>using a cloud based password manager
Wew /g/...
>>
This is why I use Master Password.
>>
>>59579199
any articles explaining the exploits?
>>
>>59579265
Only stupid programmers get exploits, it's why indians prefer java.
>>
File: secretsmug.png (696KB, 752x578px) Image search: [Google]
secretsmug.png
696KB, 752x578px
>using a non-FOSS password manager

are you trying to be retarded?
>>
>>59580134
NORMIES BTFO

I REPEAT
B T F O
>>
>>59580026
But how do you login when you are not at your computer? I use LastPass, but I think I'll change...

>>59580134
Any suggestions?
>>
>>59580157
>But how do you login when you are not at your computer?

I don't. I use a secure computer to login. I don't use insecure devices (phones, tablets, Windows etc)
>>
File: 1489718079359.png (29KB, 400x400px) Image search: [Google]
1489718079359.png
29KB, 400x400px
>use the same password for everything
>no problems
>use a pw manager so I can use different gibberish passwords for each site
>its compromised
>>
File: linklol.jpg (17KB, 255x352px) Image search: [Google]
linklol.jpg
17KB, 255x352px
>>59580157
>he doesn't tattoo passwords directly to his body
>>
>>59580221
>website forces you to change your password every month
What now fag?
>>
>>59580221
>implying I don't
I'm running out of skin already, how do you do it?
>>
>a web service exists that stores all of your passwords and logins for other sites
>people actually thought it was a good idea
>the very definition of putting all your eggs in one basket
>one incredibly high value target basket
>year after year it is shown to have terrible security
>people still use it

You should have your driver license, voting rights, power of attorney, and all private property stripped if you used this garbage. You're on the exact same level as the people who pay Nigerian lottery email scammers. Too retarded to function, too retarded to be trusted to do anything in your own best interest.
>>
>>59580157
>But how do you login when you are not at your computer? I use LastPass, but I think I'll change...
You don't.
Never trust a device that you don't personally own
>>
>give all your passwords to a single point of failure you may or may not be able to trust
I can't believe people fell for this shit.

What's stopping me from making a "password manager" that phones home with all your credentials?
>>
>>59580239
>Become obese
>Lose it quickly
There now you got some extra skin to play with
>>
>>59580078

/thread
>>
>>59579199
How do I get on this guy's level?
>>
>>59580157
>Any suggestions?
See >>59580101
>>
Convenience vs security trade offs leads me to pick convenience, which is why I use Lastpass. Having it multi-platform is amazing. Any computer running chrome/firefox I'll have my passwords and my phone has them too.

I was going to switch to 1Password as Lastpass looks outdated, but first what do you fags recommend as an offline password manager? I need it to work on all my computers, so Windows, OS X, and Linux. Web browser based ideally. I'd also need it to work on Android and iOS.
>>
Still using KeePass. it just werks.
>>
>>59580258
>storing all your money in 1 (ONE) bank
>banks are, as a result, a really high value target basket
>>
>>59580400
>Using a bank
Join a credit union, it's better than a bank or storing it under your mattress.
>>
I'll still use keepassx.
>>
>>59580400
Money in banks is insured.
Your sensitive information stored on someone else's server is not. There is no one to mitigate damage done to the end user in a security breach.

>trying to compare two vastly different things to defend using a laughably retarded web service that only exists to fleece retards incapable of remembering a password
>>
>>59579265

I'd love to see your reasoning for suggesting that LastPass is necessarily written in C, or that the exploit used here (which has not been revealed to us yet) is one necessarily exclusive to C programs.
>>
what the fick is last pass?
>>
>>59580239
>>59580221
>not using microfilm under your eyelids
>>
File: 6587608769.jpg (702KB, 1280x1707px) Image search: [Google]
6587608769.jpg
702KB, 1280x1707px
>>59580197
>Literally just setup lastpass and random passwords today
>>
>>59580480
some normalfag honeypot
>>
File: ruhroh.jpg (57KB, 520x545px) Image search: [Google]
ruhroh.jpg
57KB, 520x545px
>>59580513
>Literally just setup lastpass and random passwords today
>>
But really, Masterpass worth a damn? What's there business model? I see no donations nor pay.
>>
almost everything important has two-factor authentication anyways

unless you're one of those idiots that doesn't want to give google your phone number, you are still susceptible to database leaks regardless if you are using exploit-ridden lastpass or whatever "more secure" password managers
>>
File: 1483936994297.jpg (24KB, 529x583px) Image search: [Google]
1483936994297.jpg
24KB, 529x583px
>>59579199
So is this a "they can get into my password list from anywhere in the world" or is this a "they need to steal my PC then do some workaround shit to get in"
>>
>>59580513
>>59580528
You'll be fine
>>
>>59580548
I believe they can get your info if you visit a rogue website that uses the exploit to get the lastpass add-on to give it the passwords and such. Funnily enough it seems that the master password is the only thing safe.

Give then a few days to fix their shit then change all the important passwords. For me is not biggie as I use 2fa but I will change the passwords once they fix it just in case.
>>
>>59580474
>being able to remember more than one secure-enough password
I doubt your passwords are secure if you can remember them
>>
>not having a notebook in your desk drawer where you physically write down all your passwords
lads..
>>
>>59580674
housefire
>>
>>59580672
Confirmed retard.
I bet you can't memorize more than one phone number either.
>>
>>59580674
Ejaculating in wrong drawer
>>
>>59580693
there's no need to remember phone numbers and phone numbers are not a secure password only further proving my suspicion your passwords aren't secure
>>
>>59580708
>there's no need to remember phone numbers
You're proving over and over that you are quite literally a retard.
>>
>>59580720
>still thinks phone numbers equal a secure password
>>
>>59580749
>not being able to understand context
>fixating on the one portion of a post that your inferior chimp brain could comprehend
A phone number is a 10 digit number. If you can remember two of them you have 20 digits memorized. Twenty digits is not hard to commit to memory. Neither is a string of mixed letters and numbers or words in equal length. The fact that you couldn't grasp this concept proves beyond all doubt that you're a low functioning disabled person.

I'd honestly feel bad for you, but its just sad that millennial trash is so handicapped.
>>
>>59580811
>>not being able to understand context
Phone numbers are piss easy to remember and follow a pattern most of the times. They're easy to remember because they were made to be easy to remember. A secure password doesn't have any patterns in it, so it's hard to remember an actual secure password (at least more than one)
>fixating one one post
Since I've had to repeat the fact that phone numbers do not equal secure passwords for three times now it seems like you're the one not actually responding to my post but fixating on something stupid
>>
>>59580811
There's this thing called dictionary attack.
>>
>>59580654
If they dont need the master pass to get in then how would 2fa save you? Im not understanding how this exploit would work
>>
>>59579199

>using beta versions


v4.1.42 is the stable release
>>
>>59580842
>missing the point yet again
>putting the last nail in the coffin to demonstrate that your IQ is sub 70
You must need a splash guard over that keyboard you're using to protect it from drool.
A phone number is only "easy" to remember for your low functioning mal developed brain because service providers did the work of breaking it down for you. 000 - 000 - 0000. Three segments, the first two have three characters, the last has four. You can do the exact same thing with any word or random string of mixed numbers and letters. Again, the fact that you cannot understand this proves that you are literally retarded.

Your caretaker in the half way home should revoke your internet privileges.
>>
>>59580877
They can get the info but only if you had previously unlocked the database by typing your master password.
>>
>>59580372
keepassx or keepassxc
>>
>not losing LastpassX
>>
File: cant flimflam the 50s.jpg (135KB, 732x976px) Image search: [Google]
cant flimflam the 50s.jpg
135KB, 732x976px
>I can't remember a password that I myself made
>I need to let a vulnerable 3rd part store my logins for me
>Everything is so hard
>Who needs to remember things anyway? Your smartphone is always connected to the cloud!
>>
>>59580903
>no argument
Thought so
>>
>Use lastpass to manage a unique password to random sites idgaf about
>Two factor using yubikey everywhere I care about.
>If lastpass library is lost I'll just use the change all passwords tool.
Feels good guys.
>>
File: pepeugh.jpg (144KB, 618x597px) Image search: [Google]
pepeugh.jpg
144KB, 618x597px
>so called "tech nerds" in this thread using the word password instead of passsentence.
>>
>>59581145
Yeah, it's not like one of my passwords is YEYC45QFeyki86EJvniv4q2zoqvwd72w.
Dumb frogposter.
>>
>>59580157
>Any suggestions?
Gpg, good frontend + functional organizer is Pass.
>>
I have complex long passwords that I remember because they are big acronyms for sentences. It's not hard.
>>
File: official-rust-logo.png (11KB, 299x299px) Image search: [Google]
official-rust-logo.png
11KB, 299x299px
>>59579199
Fuck it, let's just rewrite it in Rust.
>>
>>59581190
You're a normal functioning person. Retards can't handle simple devices to assist in memorization.
>>
>online password manager
>>
>>59581190
the sentence you are acronyming is literally more difficult to break than whatever you are using.

Any sentence can be a password.
This is my password.
I can't think of a password.
Passwords are dumb.

all these are literally unbreakable
>>
>>59579265
>hurr durr every exploit is C
Don't you have some homework due for mommy coder camp?
>>
File: computer anger.png (121KB, 500x500px) Image search: [Google]
computer anger.png
121KB, 500x500px
>sign up for last pass few weeks ago
>its great wow so secure
>hear about all of these exploits past week

of course, of course. So which password manager should I move onto
>>
>>59581300
Those are all easily breakable.
Thread posts: 71
Thread images: 12


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.