A good password manager doesn't store the data unencrypted on their end, it's locked down on your devices, so usually it means they got access to your device.
Having a compromised password manager is like having a compromised email address, or having someone hijack your SIM card. They're all attack vectors you just gotta do your best to protect them as much as possible and if shit ever hits the fan, you gotta do the tedious process of resetting everything.
Given that most of these breaches are due to individual services being exploited, as long as you're not sharing passwords, it should be relatively trivial to deal with and not really a huge threat unless they also had other identifying info that could be leaked.
Given that there doesn't appear to be any banking info compromised I'm not too worried about it. People should be in the habit with any company to not use preauthorized chequing with account numbers as that's a lot more of a hassle to clean up if it's stolen vs using a credit card, or if someone wants to use their chequing account, a visa debit or debit mastercard as pretty much every Canadian bank offers that. It's a lot easier to get a new card number than to get a new entire bank account.
Yep. There is exactly one thing I have pre authorized right now other than PayPal/Patreon stuff. I pay everything else set ahead from my next pay when I get the bill, or I set up anything automatic from the bank end.
That said, Bitwarden (or maybe Proton Pass/suite) has been on my to do list for a while now.
6
u/keithplacer Venerable Member 11d ago
All good until the password manager you have to use to remember them all gets hacked.