I finally changed my password! A first step towards organisational skil


Recommended Posts

Finally,I found the courage to change the usual password to my most important accounts

It needed to done because I have reused the same password on so many different sites over the last 10+ years

I just had to take the plunge after putting it off for so long, a small step in the right direction towards account security. I'm starting to get things under control with LastPass, so hopefully I can get everything secure with strong passwords in the next 10 years. The problem is working out which accounts I have everywhere (I think I have found most accounts and put them into LastPass).

This is part of my efforts to get organised in general (Starting with Passwords). Hopefully I can post another achievement when I have all my paperwork actually in a particular order (Any ideas on how this should be organised in a filing cabinet?) and another when I have all my computer files organised in the same place in a coherent folder structure (Any ideas on this one too? At the moment it is spread across Dropbox & External HDD. I do backup my External HDD so I have already conquered this step) and emails (again, I have no idea how I will structure this, help?).

It is pretty hard to do when you have never been organised before in your whole life and suddenly you have all sorts of papers built up in no order at all when you realise that you need to do something about it. Basically it is like starting from scratch with 10 tons of paperwork, emails, passwords, computer documents waiting to be filed.

I'm in the middle of a similar project - get rid of unused website accounts, clean up and lock down others (Facebook for one). What prompted me to do it? Certain individuals I thought I could trust speculating too much about my private life (which I only found out about by reading IRC log files).

After two separate services got hacked and my passwords leaked, I bit the bullet and spent about half a day going through all of the websites I had accounts for, updating the passwords to a unique 20-digit random password. Everything is stored in 1Password and backed up to multiple places. I'm really liking the workflow!

Kinda hard to say how to file paper documents without knowing what they are. But, separate them into categories i.e.

Bank documents

Vehicle Documents

Mortgage/Property Lease documents

Utility Services Documents

and so on. Then, it would probably be best to file them(in a separate file per category) in date order, with the oldest ones at the back of the file (as you probably won't need access to these to often).

Although you may want the oldest ones at the front of the file, it's really your choice. I work in document management and have seen every kind of filing imaginable, some good, some not so good, which is why they send them to us to scan to CD.

I've locked things down with 2-factor authentication on Lastpass & Google Account. Used every possible security setting on Facebook (including App passwords) and removing unwanted apps. My new password is not very different to my old one but it is not an obvious change, this will let me get used to having a different password and then I will make a really good one as xkcd suggests when I am used to not having the same password.

Keep the tips coming for Document Management, I have to tackle this soon or the tax man will be after me.

I would love to do something similar but seeing so many big corporates being hacked and authentication credentials leaked I'm very sceptical about using any sort of password manager or anything similar.

What would be the recommendation for such a product?

I would love to do something similar but seeing so many big corporates being hacked and authentication credentials leaked I'm very sceptical about using any sort of password manager or anything similar.

What would be the recommendation for such a product?

I weighed KeePass vs. LastPass and I would say that KeePass is more secure because it is completely offline, but a pain to sync and backup everytime you add/change a password. LastPass is hosted online (so don't use if you don't trust "The Cloud") but it has the convenience factor which makes it actually practical to use. They also promise it is secure blah blah blah but for me it is the difference between having everything unmanaged with weak/reused passwords (definitely insecure) or trusting LastPass (more secure than Option A). I don't think that I could handle Keepass because I would not be able to access it remotely without some very complex setup, making it practically useless as I need to access my stuff remotely all the time.

I've been using lastpass for a long time, no problems at all, and imo more secure being online due to theft or loss of a machine / laptop, if your passwords are all stored offline your in trouble, with lastpass you change your master password and all machines now have no access to any passwords until the new master password is entered

Also

11.PNG

and

22.PNG

And there are a couple other authentication settings you can enable such as Grid Authentication etc

I had a reality check a few years ago, when I realised I was using the same password for all my stuff. It was amazing how many times I used the same one and where I used it.

I immediately started using Keepass, and I've never looked back. I sync the database using Dropbox, which I have installed on all my devices. Anytime I reformat my pc or have to reset the phone I only have to remember to note down the keepass password and I'm good to go.

One thing that drew me towards it was it is free, except fro some strange reason using it via the iPad, go figure.

Ive read about the two products some time ago and had some doubts about it...

Keepass seems more Windows oriented product...they dont offer support (or dont take responsability if you like) for contributed projects, like android/iphone...if they did that I would just point the database to a dropbox instalation folder and be done with it.

Lastpass being more cloud oriented has advantages being "always online" and can use Google authenticator but no support for applications passwords yet...

I dont know, I think I will use LastPass for some of my less important sites and see how it goes..

I had a reality check a few years ago, when I realised I was using the same password for all my stuff. It was amazing how many times I used the same one and where I used it.

I immediately started using Keepass, and I've never looked back. I sync the database using Dropbox, which I have installed on all my devices. Anytime I reformat my pc or have to reset the phone I only have to remember to note down the keepass password and I'm good to go.

One thing that drew me towards it was it is free, except fro some strange reason using it via the iPad, go figure.

Doesn't that mean that all your passwords are now only as strong as your dropbox password, essentially meaning you still only have 1 password for everything ?

Ive read about the two products some time ago and had some doubts about it...

Keepass seems more Windows oriented product...they dont offer support (or dont take responsability if you like) for contributed projects, like android/iphone...if they did that I would just point the database to a dropbox instalation folder and be done with it.

Lastpass being more cloud oriented has advantages being "always online" and can use Google authenticator but no support for applications passwords yet...

I dont know, I think I will use LastPass for some of my less important sites and see how it goes..

Yea the best practise is to use things like this for places / passwords that would be a pain to lose but not threaten anything like banking etc

Keep those important passwords in your head only imo

no support for applications passwords yet

Applications don't access LastPass directly (only the actual LastPass Chrome/Firefox extension etc.) so not really needed. For instance, your Facebook login doesn't authenticate to LastPass directly, Lastpass just saves the password for Facebook and pre-fills the password form with the Facebook password, so Facebook has no access to your LastPass account whatsoever.

It also includes a tool to automatically generate secure passwords (as well as being able to manually choose or use the existing password), so you can make a different secure password for each website/application.

Doesn't that mean that all your passwords are now only as strong as your dropbox password, essentially meaning you still only have 1 password for everything ?

I think you can password protect the keepass file and if you are paranoid you could true-crypt the file as well.

Doesn't that mean that all your passwords are now only as strong as your dropbox password, essentially meaning you still only have 1 password for everything ?

I can see what your saying, my Dropbox password was created by the password generator built into keepass it's self, I don't even know what it is So I have to make sure that, is the only password I have to make sure is stored securely else where, and I have access to it at anytime, trust me I've got stuck without access to it a few time when I'm on the move. It's a bit of a vicious circle really. My memory isn't that great so it's the best I can come up with. It's not ideal and some would say its got some flaws but it works. Rather than have one password used everywhere.

I can see what your saying, my Dropbox password was created by the password generator built into keepass it's self, I don't even know what it is So I have to make sure that, is the only password I have to make sure is stored securely else where, and I have access to it at anytime, trust me I've got stuck without access to it a few time when I'm on the move. It's a bit of a vicious circle really. My memory isn't that great so it's the best I can come up with. It's not ideal and some would say its got some flaws but it works. Rather than have one password used everywhere.

My memory is not so good either, but I can remember my lastpass password, so if I get caught out forgetting a site password I can always install lastpass somewhere and use that, and with it being a dedicated password protection / storage / encryption server I would rather rely on that than dropbox :)

I'm using LastPass and put there some credentials now...its a shame that the applications part is a premium feature and a part of another program...even if no autologin is provided I would like to use a more "clean" way of saving those than just making a generic note on the site...lets see how it goes.

I'm using LastPass and put there some credentials now...its a shame that the applications part is a premium feature and a part of another program...even if no autologin is provided I would like to use a more "clean" way of saving those than just making a generic note on the site...lets see how it goes.

Which browser are you using? Integrates with Chrome just fine for free

Which browser are you using? Integrates with Chrome just fine for free

Im using Firefox and it works perfectly.

Im talking about this feature: http://helpdesk.lastpass.com/upgrading-to-premium/lastpass-for-applications/

Even if no autologin was provided I would like to be able to save application passwords in a "cleaner" way than just generic notes, that an PIN's

I recently generated new passwords for all my accounts using lastpass. It's slightly unnerving having no idea what your password is for sites, and I haven't read too much into last pass's security methods but I'm glad I did it

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • The only reason I want to know where you from is because if you are not from the U.K, then why should you care what we in the U.K do or don't do? Racist I am not, I am fed up with the amount coming over here and feel they can come over here and think we need to support them. Do you know how much it costs this country to support these people coming over here? Even when we give them a place to live it is not good enough. We had a barge that was being used to house immigrants, oh but that was not good enough. A mate said to me at the time, when he was homeless, he would have been happy to live on the barge, instead of ending up sleeping on a bench on the beach. I am not scared to say what my family heritage is, unlike you who is scared to say where they are from or where they live. Father side U.S, mother side Wales, still have family living in the U.S. A mate who sadly died a few years ago, had a load of people from different races recording in his studio, I got on with all of them. Skin colour don't bother me, where they are from don't bother me. Religion don't bother me as long as they don't push it onto me and it is not crazy stuff. I am not religious. But if you are not living in the U.K, then why should you care if we are in the E.U or not? This the problem, too many people poking their noses into where it don't belong. But you believe what you believe, if you think I am racist, then be it, I really do not care. Just grow a pair
    • If he hasn't been able to figure that out, then why is he obsessed with tariffs? Because that's one of the most prominent tools to level the playing field when you have high cost of labor.
    • Microsoft released Windows 11 KB5102558, KB5095615 Setup and Recovery updates by Sayan Sen This past week Microsoft released the newest preview update (C-release) under KB5095093. Alongside those, Microsoft also released new dynamic updates. For those who may not know, dynamic updates bring improvements to the Windows Recovery process in the form of Windows Recovery Environment (WinRE) updates, which are also called Safe OS updates. The dynamic updates also affect the Setup file binaries in the form of Setup updates. These Dynamic Update packages are meant to be applied to existing Windows images prior to their deployment. Dynamic Updates also help preserve Language Pack (LP) and Features on Demand (FODs) content during the upgrade process. VBScript, for example, is currently an FOD on Windows 11 24H2. This time both recovery and setup updates were released for Windows 11. The company writes: "KB5095186: Safe OS Dynamic Update for Windows 11, version 26H1: June 23, 2026 This update makes improvements to the Windows recovery environment (WinRE). After installing this update, the WinRE version installed on the device should be 10.0.28000.2335. KB5102558: Setup Dynamic Update for Windows 11, versions 24H2 and 25H2: June 23, 2026 This update makes improvements to Windows setup binaries or any files that setup uses for feature updates in Windows 11, version 24H2 and Windows 11, version 25H2. KB5095615: Safe OS Dynamic Update for Windows 11, versions 24H2 and 25H2: June 23, 2026 This update makes improvements to the Windows recovery environment (WinRE). After installing this update, the WinRE version installed on the device should be 10.0.26100.8737." Microsoft notes that both the Recovery and Setup updates will be downloaded and installed automatically via the Windows Update channel.
    • The high cost of labor and operating within the US. Donald hasn't been able to figure that out--pathetic.
  • Recent Achievements

    • Conversation Starter
      jessse3334 earned a badge
      Conversation Starter
    • Reacting Well
      JuvenileDelinquent earned a badge
      Reacting Well
    • One Month Later
      Excellence2025 earned a badge
      One Month Later
    • Week One Done
      Excellence2025 earned a badge
      Week One Done
    • Week One Done
      flexorcist earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      508
    2. 2
      +Edouard
      200
    3. 3
      PsYcHoKiLLa
      151
    4. 4
      Steven P.
      73
    5. 5
      FloatingFatMan
      62
  • Tell a friend

    Love Neowin? Tell a friend!