
366: ‘Measure Seven Times, Cut Once’, With Glenn Fleishman
The Talk Show With John Gruber
00:00
Is There a Master Password in the Cloud?
LastPass has always been kind of in that list. And I don't know that it's going to be in that list anymore. It's not because they were hacked. That's bad. But the problem is, I think it is embarrassing to have master password based security as your only line of defense in 2022 or maybe in 2015. If you're one password vault, if one password had a massive massive attack, some horrible thing happened and all of their cloud stored vaults that they sync for users and give access to through web apps were stolen,. There is zero risk that anyone's material would ever be decrypted due to the secret keys that are device stored.
Transcript
Play full episode