• Kissaki@feddit.de
    link
    fedilink
    English
    arrow-up
    10
    arrow-down
    1
    ·
    1 year ago

    Using different passwords for different services protects you against data leaks opening attack vectors for all your services as well as malicious actors using your passwords like that as well as phishing impact.

    A password manager is a must for reasonable security.

    I use keepass. Local DB file with Master password. No hosted service or Browser extension is another layer of protection, of risk reduction. I manually copy/sync the DB file via cloud storage as a backup and for mobile use.

    I use Browser password storage selectively. The most critical stuff definitely only belongs into my memory and password database.

    • misery mansion@lemmy.world
      link
      fedilink
      English
      arrow-up
      5
      ·
      1 year ago

      Plus one for keepass. It is a bit more friction compared to paid services but you are in control of the passwords database, which is why I use it.

    • brisvag
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 year ago

      Same! And I use syncthing to sync the db across devices, no manual intervention needed :)