Hacker News new | ask | show | jobs
by drKarl 926 days ago
If you're going to use KeePass, do it right and use KeePassXC (that's what I use). It's cross platform. I sync the password file between my computers and my phone and I use KeePassXC client on my phone as well. And I use a completely different KeePassXC password file for work related passwords which I keep on my work computer. How many times have Okta and LastPass been hacked already? If you have some really sensitive passwords you could have your password file inside a Veracrypt container. Also, you can use a key file (can be anything including an image) along with your password for added security.
1 comments

I recently learned about VeraCrypt’s support for EMV cards and PKCS11 compatible tokens as keyfiles. I don’t have a use for that, but it’s a fantastic thing. Effectively giving you hardware MFA for encrypted vaults.