Simon Krull

31 Followers
27 Following
255 Posts
Developer, Open Sourcerer, Part of NeosCMS Team.
Twitterhttps://twitter.com/crydotsnake
GitHubhttps://github.com/crydotsnake
What is the best way to start building a backend for a Flow application?
@michael Über eine Fernbedienung macht das ganze mehr Sinn. Legt Lego nur leider nicht mehr bei.
@ivory Full again… please make it possible for more people to join 🙄
Habe dieses Jahr wieder traditionell meinen schwäbischen Kartoffelsalat gemacht. Frohe Weihnachten wünsche ich euch !🙂

LASTPASS NEWS ALERT AND COMMENTARY:
LastPass attackers know your name and billing address and all websites you have saved passwords for, and if your master password isn't sufficiently strong may be possible to brute-force open everything on attacker's machines.

PLEASE READ BEFORE PROCEEDING: https://blog.lastpass.com/2022/12/notice-of-recent-security-incident/

The fact LastPass doesn't encrypt website URLs is a known flaw it appears they never fixed on purpose, going back almost 6 years:
https://hackernoon.com/psa-lastpass-does-not-encrypt-everything-in-your-vault-8722d69b2032

This eventual possible security breach was planned-for as part of LastPass' design for username and password protection. This doesn't break the core offering.
But it has stripped away multiple layers of protection and will hasten my looking at @bitwarden

It's impossible to be completely secure in a massive offering. However I have always disagreed with their decision to not 100% encrypt all metadata, and this event shows that was a foolish choice when seen against the inevitable of the entropy our complex electronic systems.

In the end, a password manager is still right choice in comparison to alternative. And a cloud-native offering like LastPass strongly hedges against data loss by normal users trying to manage their own vault. That is an undersold primary risk, not hackers. Still, very disappointed.

Current password setup:
- Primary vault is LastPass with 2FA
- Core fallback "key" accounts like email that allow pw reset are only in a KeyPass db file with 20char password, synced via OneDrive+2FA.
- This is then further backed-up with BackBlaze, using 40char encryption key

Security Incident December 2022 Update - LastPass

We are working diligently to understand the scope of the incident and identify what specific information has been accessed.

The LastPass Blog
Definitiv ein Ziel für nächstes Jahr: Autoführerschein 🙂
@vowe This is the end of Twitter..

Did some adjustments to my little #python script:

https://github.com/crydotsnake/school-projects/commit/db19c866f30adfeb2c553125591c375eac7d2577
It is really fun to write the programs from school also in other programming languages :)

TASK: implement functionality to restart the program · crydotsnake/school-projects@db19c86

Contribute to crydotsnake/school-projects development by creating an account on GitHub.

GitHub
@sebobo 😋😋😋
@sebobo @ivory Sadly the beta is full :(