livellosegreto.it is one of the many independent Mastodon servers you can use to participate in the fediverse.
Livello Segreto è il social etico che ha rispetto di te e del tuo tempo.

Administered by:

Server stats:

1.2K
active users

#password

4 posts4 participants1 post today

From the `Your Tech Support Is Bad` Dept.

I don't use my #Apple account.. ever. I've only used it to download the odd exclusive thing from #iTunes. So I had forgot where I put my Apple ID #password and in futzing around before I remembered, I locked my account.
I don't have my #recoverykey

I just spent 45 minutes via chat for them to say "You can't recover this account without the recovery key"... which they could have answered in 45 _seconds_ if they just read my original question.

I'm considering using a password manager. I run a minimal archlinux-based system. I don't care about synchronizing with any other machines, just about making an encrypted backup of the password bank in a file I can put in an exterman HD and not worry about. Any suggestions?

Even more importantly, what to look for and what to avoid when evaluating alternatives? (My scepticism against software is what kept me away from this type of program for the last decade and a half...)

Replied in thread

DOGE to Fired CISA Staff: Email Us Your Personal Data
krebsonsecurity.com/2025/03/do

"The message instructed recently-fired #CISA employees to get in touch so they can be rehired and then immediately placed on leave, asking employees to send their #SocialSecurity number or date of birth in a password-protected email attachment — presumably with the #password needed to view the file included in the body of the email."

#ElonMusk#Musk#Doge

#Cloudflare in un post sul loro blog conferma candidamente che ha analizzato le password che le persone usano per accedere ai siti che proteggono gratis con il loro sistema di sicurezza e ha scoperto molti riutilizzi.

Adesso mi sento più sicuro !

#password #cyberecurity

diggita.com/post/17963

diggita.comCloudflare controlla le nostre password gratuitamente e scopre che quasi la metà degli accessi utente osservati è compromessa - diggitaMolti utenti riciclano le password su più servizi. In base al traffico osservato da Cloudflare tra settembre e novembre 2024, il 41% degli accessi riusciti sui siti web protetti da Cloudflare coinvolge password compromesse. “Quando eseguiamo questi controlli, Cloudflare non accede né memorizza le password in testo non crittografato degli utenti finali.” Le password vengono hashtag – cioè convertite in una stringa casuale di caratteri utilizzando un algoritmo crittografico – allo scopo di confrontarle con un database di credenziali divulgate. L’analisi dei dati si concentra sul traffico proveniente da proprietà Internet sul piano gratuito di Cloudflare, che include il rilevamento delle credenziali divulgate come funzione integrata. In sostanza Cloudflare conosce la vostra password e username del sito a cui fate login protetto dal loro sistema ma non preoccupatevi che non la divulghiamo ma la crittografiamo solo per controllare se è stata violata e fare analisi statistiche.

This dumb password rule is from ME Bank.

- Must be all numerals.
- Be 7 to 20 digits.
- Cannot have the same number three times in a row.
- Cannot have four ascending or descending numbers.
- Cannot have the same number appear more than five times.
- Cannot have pairs next to each other if the second pair is one number higher.
- Cannot ...

dumbpasswordrules.com/sites/me

dumbpasswordrules.comME Bank - Dumb Password Rules- Must be all numerals. - Be 7 to 20 digits. - Cannot have the same number three times in a row. - Cannot have four ascending or descending numbers. - Cannot have the same number appear more than five times. - Cannot have pairs next to each other if the second pair is one number higher. - Cannot be the same as 8 previous ones.

Bitwarden or 1Password? Which one is better in your opinion?

I'm using Bitwarden for a few years now, and I can't complain, but it's an American company, and I want to ditch as many American services I'm using as possible. And now I got a free family account for 1Password, and I'm considering a switch. Would you recommend that?

So, Cloudflare analyzed passwords people are using to log in to sites they protect and discovered lots of re-use.

Let me put the important words in uppercase.

So, CLOUDFLARE ANALYZED PASSWORDS PEOPLE ARE USING to LOG IN to sites THEY PROTECT and DISCOVERED lots of re-use.

[Edit with H/T: benjojo.co.uk/u/benjojo/h/cR4d]

blog.cloudflare.com/password-r

benjojo.co.ukbenjojo:It feels quite uncomfortable that cloudflare is somewhat openly admitting to analysing login credentials that are going through the reverse proxy, and providing...