• 0 Posts
  • 3 Comments
Joined 2 months ago
cake
Cake day: June 4th, 2025

help-circle
  • LastPass’s biggest problem was that they were almost the first in the game, and mistakes/choices they made 20 years ago bit them hard when they got hacked.

    There were two major issues with LastPass’s security model:

    1. Non-Password data wasn’t encrypted. So usernames and urls were visible by the people who stole the vaults.
    2. Passwords were encrypted with a number of iterations based on when the account was created, so older accounts were only run through a single iteration. The iteration process makes it much harder to guess the master password(by making it take a longer time). So single iteration makes it pretty quick to guess the password.

    So with flaw 1 you could see what vaults might have valuable passwords like banks and crypto wallets. And with flaw 2 you could reasonably quickly break into the vaults of long time users.

    So aside from their lax security allowing the compromise to happen in the first place (Nothing is fool proof), they weren’t providing the level of protection most people assumed.

    More modern password managers like BitWarden fixed those problem a long time ago.



  • The emoji thing is built into the keyboard, but it doesn’t do like on-device generation or anything. They just have a list of pre-made(maybe AI generated) combos. I’m guessing they are AI generating them, then having humans approve it, before including it in the keyboard emoji list. It’s kinda neat, in that it expands the options, but really not much. Overall the OS really feels the same. I haven’t looked forward to an Android update in many years.

    Also, as someone who doesn’t use Google’s launcher or keyboard, yeah, I get almost none of these features.