On Friday, 11 April 2014 at 15:50:47 UTC, Steven Schveighoffer
wrote:
On Fri, 11 Apr 2014 11:39:33 -0400, Dicebot <[email protected]>
wrote:
On Friday, 11 April 2014 at 12:18:38 UTC, Steven Schveighoffer
wrote:
If, after the last year of hacking, and the heartbleed bug,
people are not using password tracker/generators, you haven't
learned anything :)
Remembering 15-20 different passwords is less of a burden to
me than regularly verifying the code of password tracker
browser extensions and infrastructure involved. And blindly
using 3d-part tool for something that critical just does not
make sense.
So you don't use browsers? Or did you write your own?
-Steve
Don't use browser password managers for sure and don't use closed
source browsers :) Trusting that it does not bluntly dump my text
from all html inputs is necessarily evil borderline I need to not
cross, that is true. If source is worked with by many different
people continuously, it at least takes some skill to inject some
security hole comparing to random 3-d party tool no one even
looks inside.