I’m worried about LastPass’ incident, but I’m equally worried about password managers of renown at all that have not recently disclosed any (data or code base) cybersecurity incidents. Any password manager is a huge, juicy target…
I’m also worried about all y’all going “lololol pEoPle UsE LasTPaSs” when getting just one person on a reputable password manager they’ll actually understand how to use is a massive, uphill battle.
Anyway, like other sane people have said, you don’t have to stop using LastPass - for gods’ sakes just use a password manager. If you use it, spend some time over the holidays changing all your meaningful passwords in it and your master password. Make sure you’re signed up for haveibeenpwned. If a cloud-based password manager is right for your risk and threat model, for heavens sakes don’t stop using it in favor of a techier option you won’t use.
@hacks4pancakes I got my super anti-tech mother to use LastPass a couple years ago, which was a huge win. I told her to change her master password and sent her the instruction link. She did it on her own and I'm just so, so proud.