Mick
My feedback
76 results found
-
242 votes
An error occurred while saving the comment -
2 votes
Mick
shared this idea
·
-
13 votes
Mick
supported this idea
·
-
1,915 votes
Mick
supported this idea
·
-
63 votes
Mick
supported this idea
·
-
2 votes
Mick
shared this idea
·
-
707 votes
An error occurred while saving the comment
Mick
commented
On the LastPass incident in 2022, which is a real-world example of this happening. I've just this second found out they were finally fined by the ICO for it, and there was a class action suit in the USA, this is after years of me unsuccessfully trying to bring a private prosecution.
An error occurred while saving the comment
Mick
commented
Just in response to Jack earlier, LastPass managed to lose my entire set of credentials along with 31 million other customers, back four years ago and then lied about it for 9 months compromising any efforts to fix things. To compound matters, a lot of it was stored in plaintext. It offends and baffles me that not only have they been hacked in a similar manner again since, but that they're still trading, and I still see them recommended as trustworthy. And just for bonus marks, this all happened a mere 6 days after I signed up for 2 years and they refused me any kind of refund.
So they answer to your 1 is, hopefully not, but if the firm you've entrusted your details to are truly incompetent, they may well lose all your contact details, website addresses, usernames, and passwords as a job lot.
I trust NordPass/VPN for that now, and they offer the darkweb monitoring service which you are describing or alluding to here. Infinitely more trustworthy company. I am happy with ProtonMail with the glaring exception of the "being able to log in under any alias" thing which has been well documented in these forums since 2017, but seemingly not even acknowledged. I'm slowly migrating over to using the Proton Authenticator, but again concerned about this lax password security issue.
An error occurred while saving the comment
Mick
commented
Especially as you can log in using the same password on any alias, a complaint which has been documented on five separate threads now and appears not even to have been acknowledged since 2017.
-
11 votes
An error occurred while saving the comment
Mick
commented
That's five threads I've counted on the exact same issue now, with no apparent acknowledgement.
An error occurred while saving the comment
Mick
commented
Word on the street is that if you use any of Proton VPN, Authenticator, Pass, or Wallet, they can also be accessed by the same means, which IMO is even worse. How the **** have people been flagging this since 2017 and nothing has been done about it?
Mick
supported this idea
·
-
21 votes
An error occurred while saving the comment
Mick
commented
I must admit, my favourite thing about Gmail is being able to have four separate windows on screen, which I have separated by an extremely elaborate system of rules... one is anything from my family and other important stuff; one is anything to do with my website, security; one is anything to do with music, and the other is for general stuff. And it's all heavily colour-coded and flagged. :)
-
116 votes
Mick
supported this idea
·
-
395 votes
Mick
supported this idea
·
-
678 votes
Mick
supported this idea
·
-
52 votes
An error occurred while saving the comment
Mick
commented
Do they not already support Yubikey? I swear they did when I bought mine a few years ago.
Mick
supported this idea
·
-
54 votes
An error occurred while saving the comment
Mick
commented
It's essential in case you lose your phone. I have moved away from Authy precisely because they discontinued their desktop app for no good reason.
Mick
supported this idea
·
-
187 votes
An error occurred while saving the comment
Mick
commented
I briefly used Google Authenticator but got locked out of it for some reason. I was very happy with Authy for a while until they inexplicably closed down support for their desktop app, which is annoying (what if you lose your phone, etc)? Plus work insist I use Authy for logging into some systems which is irritating, so I am probably going to have to keep it around.
Then Proton Authenticator came along and I'm very happy with it. I still haven't gotten around to migrating everything over to it, but it seems like a nice bit of kit, and I haven't had any problems, so far. Long may that continue.
-
40 votes
An error occurred while saving the comment
Mick
commented
Hold on, are you saying you can't even change the recovery address, now? Christ on a pogo stick.
An error occurred while saving the comment
Mick
commented
Absolutely critical, as with all the other threads talking about the alternative emails being usable as logins thing. I've got an ancient email address I used from the mid-90s, and in any breach report, it is rare if it's anything other than that one which turns up. If I stayed with Proton for long enough, this would become the same situation ultimately with my "primary" email here. There were a lot of recent and scarily current credentials in this latest one, which was unusual, and I had to inform my friend who writes music FX software, that somehow, someone has got hold of the account details for his shop which I have never written down except quite recently in my PW manager and now that's on the darkweb too, with all the rest of it. Unless he's had a breach he didn't know about, I haven't the slightest clue how that ended up in a report from NordVPN, and yet that's just some of the nonsense I've been dealing with this weekend.
I concur with everything the original poster says.
Mick
supported this idea
·
I've literally just set up my Yubikeys as backup for my Proton stuff and it went fine. That's just mail, drive, and authenticator, though.