


You may recall that I have been a LastPass user for a few years, but I’ve been frustrated because they were never able to fix the problem I had that it would stop logging me out when I was idle, which was enough to push me to 1Password. Now there’s really no excuse not to use LastPass or 1Password. I’m betting that many of you are in the camp of “yeah, I know I should use a password manager, and I’m really really going to get around to that soon.” Sort of like the old days when we all knew we should be doing backups but it was just too darn hard, so we didn’t start doing them until it got as easy as plugging in a backup drive. We’ve also talked about using Bart’s awesome xkpasswd tool to generate random and yet typable passwords. If you use a password manager, can choose to have it create random passwords your brain would never think of, and which you can never type. We can’t remember passwords, and we can’t even invent random ones, so we fail from both sides. There’s no perfect solution yet, but we’ve been able to prove time and time again that letting a human pick passwords is pretty much the most flawed approach you can take. We’ve talked before about the importance of using a password manager in this age of constantly hacked services.
