47 ms·
Few advantages: - One password per service, so if a service leaks it it affects nothing else. - Super strong passwords, random long passwords way beyond what
by codeptualize 5y ago
Few advantages:
- One password per service, so if a service leaks it it affects nothing else.
- Super strong passwords, random long passwords way beyond what I can remember making them more secure from guessing/brute forcing.
Indeed, if someone gains access to your password manager you are not going to have a good time. So you have take all necessary precautions like 2FA, and even better hardware security keys, and you have to put trust in the service you use, they should be stored encrypted etc etc.
If it's less dangerous depends on your situation and what you are defending against. For me and I think for most "normal" folks, it's much safer as most risk comes from having bad passwords, reusing passwords, and services leaking your reused passwords.
That's the big question: what is the alternative? In most cases, it's way worse.
Another mitigating factor is that for important services you should enable 2fa anyway. If you keep your 2nd factor out of the pw manager (hardware security keys!) you add another layer.