Password Manager Security: Protect Your Accounts | Flaws & Tips

Forum Forward
On March 5 at EPFL, “Le Temps” is organizing the Forward Forum, entirely devoted to digital and aimed in particular at SMEs: We will talk about cybersecurity, artificial intelligence and digital sovereignty.
Program and registration on www.forumforward.ch

Subscribe to access the summary in 20 seconds.

It’s a cold shower. The ETH Zurich has just published a study showing that password managers, although very often recommended to increase our online security, are not completely reliable. Researchers analyzed the security architecture of three popular password managers: Bitwarden, LastPass and Dashlane. These three providers have around 60 million users and hold a 23% market share. Researchers found 12 attacks on Bitwarden, 7 on LastPass and 6 on Dashlane…

As ETH specialists point out, the providers of these services assure users that their stored passwords are encrypted and that even the providers themselves have no knowledge of this and have no access to the stored data. “They claim that even if someone manages to access the server, it poses no security risk to customers because the data is encrypted and therefore unreadable. However, we have shown that this is not the case,” says Matilda Backendal. She works at the University of Italian Switzerland in Lugano, like Giovanni Torrisi, while Matteo Scarlata and Kenneth Paterson, also co-authors of the study, belong to the applied cryptography group at the ETHZ.

Related Posts

Leave a Comment