this post was submitted on 02 Mar 2024
181 points (100.0% liked)

Privacy

789 readers
7 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS
 

2023 was a record-breaking year for cybersecurity in a bad way. Ransomware payments hit a record high of $1.1 billion, which is likely to...

top 37 comments
sorted by: hot top controversial new old
[–] PublicLewdness@lemmy.ml 38 points 8 months ago (1 children)

Still using KeepassXC on desktop and laptop and KeePassDX on mobile.

[–] shortwavesurfer@monero.town 4 points 8 months ago (2 children)

This is exactly my setup. How did you know? LOL.

[–] Teppichbrand@feddit.de 10 points 8 months ago (1 children)

File synchronized with Syncthing? :)

[–] shortwavesurfer@monero.town 1 points 8 months ago

I've thought about it, but for now at least I just use a USB flash drive to keep the file synchronized.

[–] PublicLewdness@lemmy.ml 1 points 8 months ago

I could say I know because i'm an elite haxxor but it would be a lie. I'm not even at script kiddie level.

[–] ebits21@lemmy.ca 30 points 8 months ago* (last edited 8 months ago) (4 children)

I use Bitwarden for passwords. Just works so well.

KeepassXC and KeePassium for TOTP codes. I keep the database in the cloud but sync a key with Syncthing that’s needed to unlock the database on the devices themselves.

[–] Lem453@lemmy.ca 9 points 8 months ago* (last edited 8 months ago) (3 children)

Locally hosted bitwarden (vault warden) that is only accessible on your local network is the way to go. When a new sync is needed away from home, wireguard VPN to connect back in makes everything nice and secure. Otherwise most of the time the vault is cached to the device locally so you don't need to phone home to access passwords.

[–] tuhriel@infosec.pub 4 points 8 months ago

I do it exactly like that, except that im connected via vpn most of the time, since my pihole is also located in my lan

[–] rambos@lemm.ee 2 points 8 months ago

Exactly my setup

load more comments (3 replies)
[–] possiblylinux127@lemmy.zip 22 points 8 months ago (1 children)
[–] NostraDavid@programming.dev 2 points 8 months ago

For Keepass users: KeepassXC can read your keepass file just fine, but KeepassXC can also run on Linux, whereas Keepass runs only on Windows.

[–] Churbleyimyam@lemm.ee 18 points 8 months ago (1 children)
[–] milicent_bystandr@lemm.ee 6 points 8 months ago (1 children)

And I do keepassdx on Android, with a (phone-specific) database synced with syncthing


P.S. syncthing is fantastic: I hope more people consider hosting discovery servers and especially relays

[–] Churbleyimyam@lemm.ee 2 points 8 months ago

Syncthing is so good!

[–] guillem@aussie.zone 12 points 8 months ago

If you are into the command line, pass is also neat. You can even have your keys in a git repo and access it with a FOSS Android app (requires some dedication to set it up). It's very useful to feed passwords to scripts without hardcoding them in the source.

[–] coffinwood@feddit.de 10 points 8 months ago (2 children)

No mention of Enpass? Stores more than just passwords, can be synced locally over wifi or in the cloud without using Enpass servers.

[–] skar3@feddit.it 6 points 8 months ago

It's not open source and they haven't had a security audit in a while AFAIK, I used to use it too but migrated to Proton Pass for these reasons https://discussion.enpass.io/index.php?/topic/404-security-audit/page/6/

[–] Artaca@lemdro.id 4 points 8 months ago

Been using Enpass for something like a decade and it's been perfect. One time licenses can be found on stacksocial, I think.

[–] eya@lemmy.dbzer0.com 7 points 8 months ago

KeePassXC my beloved

[–] Kekzkrieger@feddit.de 7 points 8 months ago (1 children)

I use keepass with my database on onedrive.

Then i connect every device to said onedrive account, copy the private key manually on each device that i need to use.

I secure my databse with said private key + a passphrase.

Might not be the best setup, but i feel like with passphrase+key i am secure enough to have the db file in the cloud.

[–] om1k@sopuli.xyz 6 points 8 months ago

you could encrypt onedrive with cryptomator

[–] navi@lemmy.tespia.org 6 points 8 months ago

I really enjoy 1Password for easy vault sharing between family members. I was able to get my (not so technically literate) siblings and dad onto my family plan. Baby steps!

[–] miguel@lemmy.ml 5 points 8 months ago

Pass (Password Store)

[–] Gutless2615@ttrpg.network 5 points 8 months ago

Vaultwarden

[–] Clusterfck@lemmy.sdf.org 4 points 8 months ago (2 children)

I love Dashlane, someone tell me why it’s bad.

[–] BrikoX@lemmy.zip 7 points 8 months ago

I know they recently published the code for their clients, so that's a plus. But I can't find any independent audits for their architecture or clients.

While all mentioned options does have independent audits done.

[–] Rexios@lemm.ee 1 points 8 months ago

Dashlane’s app experience across platforms was hit and miss for me. 1Password has been much better.

[–] jabjoe@feddit.uk 4 points 8 months ago (1 children)

No love for Nextcloud Passwords or Passman? Both have plugins for Nextcloud and have Android Apps.

[–] lolgcat@lemmy.ml 1 points 8 months ago (1 children)

No love for Nextcloud

Pretty much in general for me now. I gave it an honest go for six years but there were at least four instances where a server upgrade required nontrivial intervention to bring it back.

Syncthing + Keepass[DX] has been solid for me.

[–] jabjoe@feddit.uk 1 points 8 months ago

Which one was that Passman or Nextcloud? I've run two instance of Nextcloud Password and one of Passman, for about the same time, with no issues.

Other people do seam to have issues running Nextcloud in general, but I've never had anything but PHP version stuff that is easier fixed. I love Nextcloud!

[–] gnygnygny@lemm.ee 1 points 8 months ago

Buttercup Foss is not mention and is a nice alternative

[–] assplode@kbin.social 1 points 8 months ago

I've been using 1Password for about a year now and like it a lot

[–] 8bitretro@lemmy.ml 1 points 8 months ago

I use Passy because I like the purple UI lmao