LastPass: another view

Last month I mentioned the LastPass breach (I ♥ password managers, 2 December).

I didn’t do much more than mention it, but if you want to read more, this Mastodon post by Jeremi M Gosney makes several interesting points.

In particular, I would be reluctant to use a password manager which stored my secrets opaquely in the cloud somewhere; the ability to store your password database only where you choose to put it seems to me to be a fundamental security advantage.

