• drspod@lemmy.ml
    link
    fedilink
    arrow-up
    121
    arrow-down
    1
    ·
    2 days ago

    This breach is worse than just a website’s database being leaked. These are info-stealer malware logs. Meaning that you had malware on one of your devices that recorded you typing your credentials into websites and then the logs of that malware were publicly leaked.

    Before changing all of your passwords (and setting up a password manager if you don’t already use one) you need to identify which of your devices was compromised and wipe it.

    If you change all your passwords from the compromised device then the malware will just record all of your new passwords.

    • Cycle0861@lemmy.world
      link
      fedilink
      arrow-up
      3
      ·
      19 hours ago

      Which password manager is good? I use Bitwarden but it would take forever to change all my passwords inside of it

      • arthur@lemmy.zip
        link
        fedilink
        English
        arrow-up
        4
        ·
        10 hours ago

        Bitwarden have a good balance of security, price and convenience. If you want more control and less convenience, KeePass.

        • fine_sandy_bottom@discuss.tchncs.de
          link
          fedilink
          English
          arrow-up
          2
          ·
          edit-2
          37 minutes ago

          Keepassxc

          The best IMO because it’s just a client you install on a device which reads an encrypted data file you can sync how you like.

          This way it’s not a hoard like lastpass or bitwarden.

          • italics2@lemmy.world
            link
            fedilink
            arrow-up
            1
            ·
            42 minutes ago

            I had an internship a couple years back at a web development startup that used it. Seemed to work just fine.

          • arthur@lemmy.zip
            link
            fedilink
            English
            arrow-up
            1
            ·
            1 hour ago

            Last time I used it was very convenient, but the price was too high for me. Besides that, I bought 1pass when was possible to buy once and have it forever, since then, they made increasingly harder to access it if you bought instead of use as a paid service. That’s why I made the change to KeePass. The only thing that 1pass offers that could justify their business model as a service is sync on multiple devices, and bitwarden does that as well. KeePass don’t, but you can make it happen with free Dropbox for example.