
07-08-2024, 03:39 PM
|
Sage
|
Join Date: Dec 2011
Location: Tamarind Grove/Monpazier, France
Posts: 14,705
Thanks: 390
Thanked 2,132 Times in 877 Posts
|
|
Quote:
Originally Posted by Maker
Not a fan of RoboForm. It has some innovative features, but appears to have several flaws.
Your data file is in their possession so if they suffer an outage or cyber attack, you are in a world of hurt. KeePass data is in your possession, and you can store it wherever you want.
Limited to one password database. KeePass allows multiple databases. Certain places where family or friends would also want to access can be put in its own file and shared without sharing your private data.
Free version is for one device only. KeePass is not limited. Use it on all your devices.
It reaches out to the web to do "security" things. That exposes itself to detection. Doing things beyond its main purpose is generally frowned upon.
Software has not been peer reviewed for coding errors, hackability, or secret back doors. KeePass is open source. Many experts have not been able to find any security flaws.
A long passphrase is something that can be remembered but also contains pieces that are not actual words. The very long length makes it secure. Like:
Today@1200!sWhen\ottery#Nums@rePicked
TThhiissIIssAALLoonnggPPaasssspphhrrssee
No single place means that every part of the process adds a unique layer of security. There is no one way to hack the process without having several completely different compromises at the same time. Here are a few
Database is stored where you only have access
Database is not hackable. A key logger could get your master password, but would not be able to get your database.
Passwords are sent via a secure process to web browsers.
Every password can be different. If one site gets hacked, exposure is limited.
|
Thanks for the response/explanation, Maker.
__________________
It's harder to hate close up.
|