this post was submitted on 23 Jun 2026
104 points (98.1% liked)

Technology

85670 readers
4004 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 3 years ago
MODERATORS
top 19 comments
sorted by: hot top controversial new old
[–] Fizz@lemmy.nz 3 points 4 hours ago

Thats not so bad. I swear sales is always a magnet for this shit. They constantly insist on integration with the most dogshit slop products.

[–] PotatoesFall@discuss.tchncs.de 5 points 5 hours ago

I heard thr saying, "LastPass is the Last Password manager you should ever use". That was like, what, three breaches ago?

[–] fireshell@fedia.io 3 points 5 hours ago

A separate mention should be made of PearPass. It is a new password manager, direct synchronization between devices without central cloud storage, store data locally on your devices and apps for major platforms.

PearPass as an interesting new option worth keeping an eye on.

[–] popsalottacornsyrup@lemmy.world 7 points 9 hours ago

Left for BitWarden after the first major breach. Sad. Such a good start back in the day.

[–] Prove_your_argument@piefed.social 36 points 13 hours ago (2 children)

At least it's just salesforce data and not actual vaults and secrets.

I moved away from these guys a long, long time ago when they started upping subscription costs.

[–] spaghettiwestern@sh.itjust.works 22 points 13 hours ago (1 children)

When Logmein acquired LastPass in 2015 I moved to Keepass and haven't looked back. If the word enshittification existed back then it would have applied perfectly.

[–] Prove_your_argument@piefed.social 17 points 13 hours ago (3 children)

I went with bitwarden and signs are pointing to them going to shit now.

Maybe it's time for me to keep ass.

[–] WindyRebel@lemmy.world 8 points 12 hours ago (1 children)

What signs are pointing to them going to shit? I don’t exactly keep up on this stuff, but I use their product and it is perfectly fine for me.

[–] Dultas@lemmy.world 2 points 4 hours ago

Sold to private equity and I think going closed source on some stuff IIRC.

[–] Jagget@programming.dev 9 points 13 hours ago

keep ass with keepass

[–] spaghettiwestern@sh.itjust.works 4 points 13 hours ago

Keepass & Syncthing has worked for years without an issue, even though my DB is opened on multiple devices at once. It is rare (once or twice a year) that I have a minor, easily solved sync problem.

[–] Squizzy@lemmy.world 0 points 10 hours ago

I stopped my sub and havent noticed any changes to service. The autofill was never used so I just log in to grab a password for old logins and they are there.

[–] one_old_coder@piefed.social 28 points 13 hours ago

Again? It happens a lot to them.

[–] mereo@piefed.ca 12 points 11 hours ago (1 children)

I selfhost Vaultwarden on my server. I use the Bitwarden client to access my passwords.

[–] Marthirial@lemmy.world 3 points 7 hours ago

Hear hear. Same here. Not an issue in 4 months.

[–] adarza@piefed.ca 11 points 12 hours ago

lastpass is already on my 'stay far away from' list, and have been on it for years:

https://en.wikipedia.org/wiki/LastPass#Security_incidents

[–] Faceman2K23@discuss.tchncs.de 10 points 12 hours ago (1 children)

Haven't used Lastpass since the logmein deal rubbed me the wrong way, went to dashlane for many years but they had some security scares just recently. now I self host Vaultwarden, which is a bitwarden compatable server.

for maximum security I could have it local only and connect to it via VPN directly, but I put it behind nginx, with SSL, fail2ban with only my IPs whitelisted and a geofilter on top of that. so even if someone did manage to make it to the login page of the admin panel, they'd need a 30 digit passphrase and an email address username that only exists for that one application, get it wrong once and you are blacklisted.

[–] vrek@programming.dev 3 points 10 hours ago

That would make me so scared. Imagine having 1 or 36 too many beers and you need to check your bank account to see if you can afford the 49th beer so you mistyped one digit of your passphrase and now locked out of everything.

[–] WhatsHerBucket@lemmy.world 11 points 13 hours ago

The Klue supply chain attack was claimed by the Icarus extortion group, who compromised the infrastructure of the AI-powered market intelligence platform and stole OAuth tokens that connected customers' Salesforce environments.

At least someone is finding good use for AI lol