I finally changed my password! A first step towards organisational skil


Recommended Posts

Finally,I found the courage to change the usual password to my most important accounts

It needed to done because I have reused the same password on so many different sites over the last 10+ years

I just had to take the plunge after putting it off for so long, a small step in the right direction towards account security. I'm starting to get things under control with LastPass, so hopefully I can get everything secure with strong passwords in the next 10 years. The problem is working out which accounts I have everywhere (I think I have found most accounts and put them into LastPass).

This is part of my efforts to get organised in general (Starting with Passwords). Hopefully I can post another achievement when I have all my paperwork actually in a particular order (Any ideas on how this should be organised in a filing cabinet?) and another when I have all my computer files organised in the same place in a coherent folder structure (Any ideas on this one too? At the moment it is spread across Dropbox & External HDD. I do backup my External HDD so I have already conquered this step) and emails (again, I have no idea how I will structure this, help?).

It is pretty hard to do when you have never been organised before in your whole life and suddenly you have all sorts of papers built up in no order at all when you realise that you need to do something about it. Basically it is like starting from scratch with 10 tons of paperwork, emails, passwords, computer documents waiting to be filed.

I'm in the middle of a similar project - get rid of unused website accounts, clean up and lock down others (Facebook for one). What prompted me to do it? Certain individuals I thought I could trust speculating too much about my private life (which I only found out about by reading IRC log files).

After two separate services got hacked and my passwords leaked, I bit the bullet and spent about half a day going through all of the websites I had accounts for, updating the passwords to a unique 20-digit random password. Everything is stored in 1Password and backed up to multiple places. I'm really liking the workflow!

Kinda hard to say how to file paper documents without knowing what they are. But, separate them into categories i.e.

Bank documents

Vehicle Documents

Mortgage/Property Lease documents

Utility Services Documents

and so on. Then, it would probably be best to file them(in a separate file per category) in date order, with the oldest ones at the back of the file (as you probably won't need access to these to often).

Although you may want the oldest ones at the front of the file, it's really your choice. I work in document management and have seen every kind of filing imaginable, some good, some not so good, which is why they send them to us to scan to CD.

I've locked things down with 2-factor authentication on Lastpass & Google Account. Used every possible security setting on Facebook (including App passwords) and removing unwanted apps. My new password is not very different to my old one but it is not an obvious change, this will let me get used to having a different password and then I will make a really good one as xkcd suggests when I am used to not having the same password.

Keep the tips coming for Document Management, I have to tackle this soon or the tax man will be after me.

I would love to do something similar but seeing so many big corporates being hacked and authentication credentials leaked I'm very sceptical about using any sort of password manager or anything similar.

What would be the recommendation for such a product?

I would love to do something similar but seeing so many big corporates being hacked and authentication credentials leaked I'm very sceptical about using any sort of password manager or anything similar.

What would be the recommendation for such a product?

I weighed KeePass vs. LastPass and I would say that KeePass is more secure because it is completely offline, but a pain to sync and backup everytime you add/change a password. LastPass is hosted online (so don't use if you don't trust "The Cloud") but it has the convenience factor which makes it actually practical to use. They also promise it is secure blah blah blah but for me it is the difference between having everything unmanaged with weak/reused passwords (definitely insecure) or trusting LastPass (more secure than Option A). I don't think that I could handle Keepass because I would not be able to access it remotely without some very complex setup, making it practically useless as I need to access my stuff remotely all the time.

I've been using lastpass for a long time, no problems at all, and imo more secure being online due to theft or loss of a machine / laptop, if your passwords are all stored offline your in trouble, with lastpass you change your master password and all machines now have no access to any passwords until the new master password is entered

Also

11.PNG

and

22.PNG

And there are a couple other authentication settings you can enable such as Grid Authentication etc

I had a reality check a few years ago, when I realised I was using the same password for all my stuff. It was amazing how many times I used the same one and where I used it.

I immediately started using Keepass, and I've never looked back. I sync the database using Dropbox, which I have installed on all my devices. Anytime I reformat my pc or have to reset the phone I only have to remember to note down the keepass password and I'm good to go.

One thing that drew me towards it was it is free, except fro some strange reason using it via the iPad, go figure.

Ive read about the two products some time ago and had some doubts about it...

Keepass seems more Windows oriented product...they dont offer support (or dont take responsability if you like) for contributed projects, like android/iphone...if they did that I would just point the database to a dropbox instalation folder and be done with it.

Lastpass being more cloud oriented has advantages being "always online" and can use Google authenticator but no support for applications passwords yet...

I dont know, I think I will use LastPass for some of my less important sites and see how it goes..

I had a reality check a few years ago, when I realised I was using the same password for all my stuff. It was amazing how many times I used the same one and where I used it.

I immediately started using Keepass, and I've never looked back. I sync the database using Dropbox, which I have installed on all my devices. Anytime I reformat my pc or have to reset the phone I only have to remember to note down the keepass password and I'm good to go.

One thing that drew me towards it was it is free, except fro some strange reason using it via the iPad, go figure.

Doesn't that mean that all your passwords are now only as strong as your dropbox password, essentially meaning you still only have 1 password for everything ?

Ive read about the two products some time ago and had some doubts about it...

Keepass seems more Windows oriented product...they dont offer support (or dont take responsability if you like) for contributed projects, like android/iphone...if they did that I would just point the database to a dropbox instalation folder and be done with it.

Lastpass being more cloud oriented has advantages being "always online" and can use Google authenticator but no support for applications passwords yet...

I dont know, I think I will use LastPass for some of my less important sites and see how it goes..

Yea the best practise is to use things like this for places / passwords that would be a pain to lose but not threaten anything like banking etc

Keep those important passwords in your head only imo

no support for applications passwords yet

Applications don't access LastPass directly (only the actual LastPass Chrome/Firefox extension etc.) so not really needed. For instance, your Facebook login doesn't authenticate to LastPass directly, Lastpass just saves the password for Facebook and pre-fills the password form with the Facebook password, so Facebook has no access to your LastPass account whatsoever.

It also includes a tool to automatically generate secure passwords (as well as being able to manually choose or use the existing password), so you can make a different secure password for each website/application.

Doesn't that mean that all your passwords are now only as strong as your dropbox password, essentially meaning you still only have 1 password for everything ?

I think you can password protect the keepass file and if you are paranoid you could true-crypt the file as well.

Doesn't that mean that all your passwords are now only as strong as your dropbox password, essentially meaning you still only have 1 password for everything ?

I can see what your saying, my Dropbox password was created by the password generator built into keepass it's self, I don't even know what it is So I have to make sure that, is the only password I have to make sure is stored securely else where, and I have access to it at anytime, trust me I've got stuck without access to it a few time when I'm on the move. It's a bit of a vicious circle really. My memory isn't that great so it's the best I can come up with. It's not ideal and some would say its got some flaws but it works. Rather than have one password used everywhere.

I can see what your saying, my Dropbox password was created by the password generator built into keepass it's self, I don't even know what it is So I have to make sure that, is the only password I have to make sure is stored securely else where, and I have access to it at anytime, trust me I've got stuck without access to it a few time when I'm on the move. It's a bit of a vicious circle really. My memory isn't that great so it's the best I can come up with. It's not ideal and some would say its got some flaws but it works. Rather than have one password used everywhere.

My memory is not so good either, but I can remember my lastpass password, so if I get caught out forgetting a site password I can always install lastpass somewhere and use that, and with it being a dedicated password protection / storage / encryption server I would rather rely on that than dropbox :)

I'm using LastPass and put there some credentials now...its a shame that the applications part is a premium feature and a part of another program...even if no autologin is provided I would like to use a more "clean" way of saving those than just making a generic note on the site...lets see how it goes.

I'm using LastPass and put there some credentials now...its a shame that the applications part is a premium feature and a part of another program...even if no autologin is provided I would like to use a more "clean" way of saving those than just making a generic note on the site...lets see how it goes.

Which browser are you using? Integrates with Chrome just fine for free

Which browser are you using? Integrates with Chrome just fine for free

Im using Firefox and it works perfectly.

Im talking about this feature: http://helpdesk.lastpass.com/upgrading-to-premium/lastpass-for-applications/

Even if no autologin was provided I would like to be able to save application passwords in a "cleaner" way than just generic notes, that an PIN's

I recently generated new passwords for all my accounts using lastpass. It's slightly unnerving having no idea what your password is for sites, and I haven't read too much into last pass's security methods but I'm glad I did it

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • (Topic to get the juices flowing this Sunday morning!...) Actually, the situation has almost nothing to do with "lack of skills", especially since assembly-line skills can be taught to anyone, including Americans, certainly. Rather, the inadequacy-to-impossibility of large-scale tech manufacturing in America today, and the reasons why America finds tech manufacturing completely onerous in the 21st century, has to do with politically driven laws amid a plethora of non-scientific, utterly politicized "science-fact" that is patently false, punitive business taxation at every turn, an array of judicial fines of unimaginable scope and complexity, and, last but not least, American unionization strictures that serve to actually slay job creation and hobble all such manufacturing endeavors in America before they can get off the ground. Globalism emerged, they tell us, as the needed answer to American hubris and an unholy American drive to excel. Unless one is buried under mounds of political propaganda, it's easy to see the absurdity of labeling the employees of SpaceX, for instance, as "unskilled labor"... Etc. ad infinitum. At one time in the recent past, American manufacturing prowess was the envy of the world in a wide variety of technical fields! The current federal and state government roadblocks against America becoming competitive globally in tech manufacturing are considerable, it's true, as anyone with a working brain knows. But remarkably, that is only half the story! The other half of the story is, of course, the corporations themselves... Chinese tech manufacturing is simply unassailable in terms of profits, because the Chinese government wants to see its tech manufacturing second-to-none globally so that no companies/nations can compete in terms of ROI, and China has completely succeeded in that goal. Let's tic-off a few things: *Chinese tariff policies are set according to what is considered best for Chinese business, Chinese employees, and the Chinese people. Huge difference with how things are done with tariffs in the US--as the US government (SCOTUS in this case, Congress in others) plainly feels that tariffs are "unfair" for the limited number of citizens who may pay them, whereas nothing is "unfair" when Congress considers the Personal Income Tax rates to be infinitely hike-able, along with infinitely enlarging annual budget deficits. *The Chinese government boldly subsidizes Chinese companies to artificially amplify their profits. *The Chinese government deliberately refuses to avidly demonize Chinese businesses and does not consider Chinese businesses "the enemy", so very unlike American (D)s these days. *Chinese labor laws and businesses are allowed to set their own labor policies according to what Chinese companies consider is best for companies and their employees... Simply put, American workers in tech manufacturing are not allowed to set their own labor policies! It is the height of hypocrisy for Americans to decry working conditions in China while simultaneously ensuring that American products are manufactured in China, not in the US, simply to maximize profits. There is nothing wrong with making a profit, of course, absolutely nothing. But there is plenty wrong with attempts to normalize hypocrisy of this kind! But rank hypocrisy and the (D) party in the US are longtime bedfellows... The current government in Washington is working overtime to see if it can toss out the horribly poor, failed economic policies of the past, while the (D)s still in Washington work very hard to bring back the stupidity whenever possible. With the right policies in place, America can be an infinitely competitive manufacturer.
    • eSound Music 3.0.0 by Razvan Serea eSound Music is a free music streaming app that gives you access to over 150 million tracks from all genres. It allows you to search and listen to your favorite songs, create personalized playlists, and explore trending music. With an intuitive interface and smart search, discovering new artists and hits is fast and easy. You can even stream music in the background while using other apps. One of eSound’s standout features is its offline mode, letting you download and listen without internet access. eSound is widely compatible, working seamlessly across Windows, macOS, Linux, iPhone, iPad, Android, HarmonyOS, Amazon Fire devices, CarPlay, Android Auto, and more. eSound Music key features: Over 150 million tracks available Smart search for songs, artists, albums, and playlists Personalized song recommendations Continuous playback with auto-generated playlists Offline mode with song and playlist downloads Daily-updated trending charts and top songs Sleep timer to auto-stop playback High-quality audio support Customizable playlists and favorites Support for Apple CarPlay and Android Auto Works on Windows, macOS, Linux, iOS, Android, HarmonyOS, Amazon Fire, and more Cross-device sync via account login Background playback while using other apps Download: eSound Music 64-bit | Portable | ~160.0 MB (Free, paid upgrade available) Download: ARM64 | 116.0 MB Links: eSound Music Website | Screenshot | Web Player | Other OSes Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • All these CEOs got the biggest boners thinking about firing employees for AI. Turned out it was just a wet dream.
  • Recent Achievements

    • Conversation Starter
      jessse3334 earned a badge
      Conversation Starter
    • Reacting Well
      JuvenileDelinquent earned a badge
      Reacting Well
    • One Month Later
      Excellence2025 earned a badge
      One Month Later
    • Week One Done
      Excellence2025 earned a badge
      Week One Done
    • Week One Done
      flexorcist earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      508
    2. 2
      +Edouard
      198
    3. 3
      PsYcHoKiLLa
      152
    4. 4
      Steven P.
      73
    5. 5
      FloatingFatMan
      65
  • Tell a friend

    Love Neowin? Tell a friend!