home.social

#keepassium — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #keepassium, aggregated by home.social.

  1. My first ever blog is online 😃

    https://www.mikronod.se/blog/

    Only one post so far though, it's about syncing keepass between linux and a phone using nextcloud.

    #Blog #KeePass #Nextcloud #Linux #Android #iPhone #KeePssXC #KeePassDX #Strongbox #KeePassium #Sync #Syncing
  2. @Tutanota : rubbish.

    Two WEAK locks may be LESS pointless than one WEAK lock, but they're still pointless. Go read csoonline.com/article/4147134.

    U2F has been superseded by FIDO2 (hardware keys in WebAuthn mode) and Passkeys (example in Dutch: todon.nl/@ErikvanStraten/11628).

    Both WebAuthn methods have advantages and disadvantages.

    If you don't like them, use a trustworthy passwordmanager and:

    • Let it create a unique, random, as long as possible, pw per account

    • Make backups of the pw mngr database

    • Device compromise means "game over"

    • Use Autofill (easy in Android and iOS/iPadOS)

    • If Autofill does not automatically retrieve your credentials, it probably is a fake (phishing) website. Do read troyhunt.com/a-sneaky-phish-ju

    Please stop misinforming people.

    #WeakMFAsucks #Weak2FAsucks #FIDO2 #WebAuthn #Passkeys #AutoFill #KeePassium #KeePassDX

  3. [en] Serious security vulnerabilities in cloud-based password managers : #Bitwarden, #Lastpass, #Dashlane

    The research team of Prof. Paterson found cryptographic technologies from the 90s. "We were surprised by the severity of the security vulnerabilities".

    In most cases, the researchers were able to gain access to the passwords – and even make changes to them.

    ethz.ch/en/news-and-events/eth

    Aside from this research paper, recommended password managers often include #KeePassXC and/or #KeePassDX for Android or #KeePassium for iOS. Also, it's usually a good idea to store only accounts and passwords that are really necessary on the go, especially on mobile devices.

    #password #passwordmanager #cloudbased #security #ictsecurity #securityvulnerability #ethz

  4. [en] Serious security vulnerabilities in cloud-based password managers : #Bitwarden, #Lastpass, #Dashlane

    The research team of Prof. Paterson found cryptographic technologies from the 90s. "We were surprised by the severity of the security vulnerabilities".

    In most cases, the researchers were able to gain access to the passwords – and even make changes to them.

    ethz.ch/en/news-and-events/eth

    Aside from this research paper, recommended password managers often include #KeePassXC and/or #KeePassDX for Android or #KeePassium for iOS. Also, it's usually a good idea to store only accounts and passwords that are really necessary on the go, especially on mobile devices.

    #password #passwordmanager #cloudbased #security #ictsecurity #securityvulnerability #ethz

  5. [de] Cloudbasierte Passwortmanager mit gravierenden Sicherheitslücken: #Bitwarden, #Lastpass, #Dashlane

    Vernichtende Feststellung: "kryptographische Technologien aus den 90er-Jahren". Dem Team um Prof. Paterson war es offenbar recht einfach möglich, "Zugang zu den Passwörtern verschaffen – und diese sogar [zu] manipulieren".

    ethz.ch/de/news-und-veranstalt

    Ausserhalb dieses Berichts wird u. a. oft #KeePassXC und/oder #KeePassDX für Android oder #KeePassium für iOS empfohlen mit der zusätzlichen Empfehlung, gerade auf mobilen Geräten nur diejenigen Konti/Passwörter zu speichern, die unterwegs wirklich dabei sein müssen.

    #passwort #passwortmanager #cloudbasiert #sicherheit #ictsicherheit #sicherheitsluecken #ethz

  6. Bisher war S-Trust der Dienst meines Vertrauens, dem ich meine Passwörter anvertraute. S-Trust wird zum 31.03.2026 eingestellt. Mein Konto dort hab ich heute gelöscht.

    Dies – und die Inspiration durch den Tag der digitalen Unabhängigkeit – führten dazu, meinen Umgang mit Passwörtern ganz neu zu organisieren: Die besonders sensiblen für Provider, E-Mail, Homepage, WLAN, Versicherungen u.ä. sind jetzt nicht mehr auf fremden Rechnern gespeichert (aka "cloud"), sondern lokal und gut gesichert bei mir.

    Umgesetzt habe ich das vor allem mit KeePassXC und KeePassium. Jetzt bin ich dabei, jede passende Gelegenheit zu nutzen, um längere und komplexere Passwörter zu verwenden (möglichst 32 Zeichen). Wenn möglich, aktiviere ich Zwei-Faktor-Authentisierung.

    Fühlt sich gut an!

    Demnächst muss ich mich mal mit den FIDO-Token beschäftigen, die hier bislang nur so rumliegen ...

    #strust #passwort #password #passwörter #passwords #did #dut #ididit #dutgemacht #provider #email #KeePassXC #KeePassium #2fa #itsicherheit

  7. My solution for syncing keepass between Linux and iPhone (works with KeePassDX on Android too) using Nextcloud:

    My Linux computer is running Incus, and one container is my Nextcloud server.

    I have created a folder ~/nextcloud where my keepass.kdbx is located.

    KeePassXC is using this file directly and since it's a local file it's always accessible.

    I have mounted ~/nextcloud inside the Incus Nextcloud container as /data.

    In Nextcloud I have monuted /data as a folder for my Nextcloud user.

    In KeePassium in iPhone I have set it up to use WebDAV to my Nextcloud server and then choosen the keepass.kdbx file.

    (This way I can also easily share any file between Linux and iPhone)
    (I know there are other ways to do this, but since I want to always have access to keepass.kdbx on Linux even if Nextcloud is not running this solution best fits my needs)

    #KeePass #KeePassXC #KeePassDX #KeePassium #Incus #Nextcloud #Linux #iPhone #Android #WebDAV #PasswordManager #PasswordManagers #Passwords
  8. Salin ovella ei QR-koodin lukeminen toiminut. Poljin 3,7-sisäpyöräilyn. Ajoin myötäpäiväkierroksen. Kävin Prismassa. Pyykkäsin.

    https://marginaa.li/2025/04/05/5-huhtikuuta-2025-aint-helping-me-start/