Question Best password manager ( Free & Paid ) & why ?

Please provide comments and solutions that are helpful to the author of this topic.

TairikuOkami

Level 37
Verified
Top Poster
Content Creator
Well-known
May 13, 2017
2,685
Looking for the new one at the moment, I have about 200 passwords. The journey never ends. šŸ„±

I used Keepass, then Bitwarden, then Edge, which was pretty good, after they added categories, but some genius decided to remove them again, so back to Bitwarden.
But another genius at Bitwarden decided to improve the extension and designed the mobile version for desktop, so it sucks, I am looking for something more sensible.
 

Attachments

  • capture_12212024_194111.jpg
    capture_12212024_194111.jpg
    47.8 KB · Views: 34

BigWrench

Level 19
Verified
Top Poster
Well-known
Apr 13, 2014
946
Looking for the new one at the moment, I have about 200 passwords. The journey never ends. šŸ„±

I used Keepass, then Bitwarden, then Edge, which was pretty good, after they added categories, but some genius decided to remove them again, so back to Bitwarden.
But another genius at Bitwarden decided to improve the extension and designed the mobile version for desktop, so it sucks, I am looking for something more sensible.
Not a fan of the latest update whatsoever. Developers need to remember, if it ainā€™t broke, donā€™t fix it. āœŒļø
 

SeriousHoax

Level 49
Verified
Top Poster
Well-known
Mar 16, 2019
3,868
Formerly Bitwarden + Authy, currently KeePassXC where I have also put all my 2FAs and syncing across devices with the help of Syncthing.
But I'm not too much of a fond the all-in-one basket approach and syncing via Syncthing is becoming annoying lately for me. I prefer to have a backup online for safety and I usually forget to manually back it up after a password change/adding something new.

I wasn't aware that Proton Pass is free to use. Ente auth also seems like a great replacement for Authy 2FA since it's available on all three platforms I need, Windows, Android, Linux, including a web interface? I'll have a look at them. Thanks @Captain Awesome and @Jonny Quest for mentioning this two.
Edit: Just realized that I already have an ente auth account, lol. I don't remember when I created it. It's empty at the moment.
 
Last edited:

tofargone

Level 6
Jun 24, 2024
264
Well I used Dashlane (Very Nice) but $$$.

I used Sticky (no complaints, but not as polished)

Then I settled on Roboform (If you used the old version, this new version is REALLY GOOD, it's way better... So polished, saves immediately when u make changes, and very easy to use).
 

BigWrench

Level 19
Verified
Top Poster
Well-known
Apr 13, 2014
946
Well I used Dashlane (Very Nice) but $$$.

I used Sticky (no complaints, but not as polished)

Then I settled on Roboform (If you used the old version, this new version is REALLY GOOD, it's way better... So polished, saves immediately when u make changes, and very easy to use).
I, along with others, will agree that Dashlane has overpriced its self . 2 thumbs up for Sticky šŸ‘šŸ‘. Dashlane also abolished all the lifetime key holders. Myself included šŸ‘Ž

āœŒļø
 
  • Like
Reactions: Jack

bazang

Level 8
Jul 3, 2024
365
Which is the best password manager for mobile device and system & why ? Both Free & Paid.

1. Bitwarden
2. Dashlane
3. Lastpass
4. Keepass
5. Others ( please specify )

Want to use for both system and mobile device with passwords / secure notes sync. So please share what's you're using and why.

Thanks in advance.
KeePassium can be used with KeePassXC database.

KeePassium for the iPhone and KeePassXC for the Windows desktop.

They work really well together.

You need iOS and Windows.

ĀÆ\_(惄)_/ĀÆ
 

Oxygen

Level 44
Verified
Feb 23, 2014
3,327
I've used Bitwarden since 2016, previously LastPass the years prior.

However, Bitwarden hasn't worked on iOS since the 18 update. Even though the changelogs indicate that they fixed the issue, the vault just won't show anything and says "an error occurred" at every start.
 

Game Of Thrones

Level 6
Verified
Well-known
Jun 5, 2014
296
this writing might be long because I nearly used every password manager out there, the best one is 1Password why? I put it in a spoiler so it does not bother people.making thread long.

its security model is the most advanced in terms of breach mitigation and securing the vault of people's passwords, the secret key that it creates makes even an easy-to-guess master password secure, it has 128bit protection so even if breaches happen and the user has lame master password the data is safe.

their model is really good for rogue employees or employees whose devices got compromised, the LastPass breaches were mostly because of the bad security model they had in which one of their employees got its device compromised (from a plex bug!) and the whole LastPass systems went into chaos, even codes were compromised vaults got stolen and because they did not have something like secret key the user's defense came from how good their master passwords were. many of them got compromised and their crypto assets got stolen.
1password has one of the best tactics and defenses against this kind of incident. I did read other security whitepapers and the 1Password one was really professional, detailed, logical, and practical.

breaches happen in every company but you should consider a company that is ready for it and has a structure so your data even after a breach does not get compromised. the security model of 1Password does this in the best way I've ever seen.

the 128-bit secret key model that 1Password has actually made any brute-force attack nearly impossible.

One of the most important features of password managers is autofill. 1Password beats every password manager out there in my heavy autofill testing on many websites in terms of speed, accuracy, and detail. it actually has one of the most features reached autofill of all. its credit card filling is top-notch. many people here use proton pass, its autofill is a joke. just go to the SoundCloud site go to login and see that the proton pass can not fill it!! it can not fill in credit card it can not fill identity information which makes filling forms super fast with 1Password you can have different IDs and choose fast. bitwarden and proton pass are jokes compared to 1passwords sophistication and quality of autofill features and accuracy.

1Password can fill any password or text in Windows or mac apps! just right-click on the field and click on: type in window! it fills it! you can even drag and drop!!!

the level of detail that makes users' lives easier in 1Password apps is sometimes insane compared to others: the UI design is logical, fully based on principles of design, your eye can find whatever you want in a glance, the use of color the use of UI sections and categories, the font, making it really easy to find what you want and really enjoyable to use.

small details in apps: using a TPM chip and using Windows Hello to unlock the app is easy and secure, unlike Proton Pass which their Windows app is a joke and can not use biometrics or a TPM chip. you can enlarge a password or username and view it in a large type, the password generator has an intelligent feature that can detect a website's requirements and suggest passwords based on their requirements. they have a GitHub page for that database and Apple is contributing to it too. they have a really good QR scanner and they were the first that implement it in a password manager, just go to the 2fa setting of a website, and when it shows the QR code click on scan QR in 1Password it creates the 2fa section !! in recent versions it even detects the code automatically and shows a notification that do you want me to save this 2fa? with just one click you are done!

their import capabilities are good too one of the best if you want to migrate to 1Password, just export your info from your current password manager and import it to 1Password its one of the most accurate in terms of detecting the info and your data, others have many problems in this regard not importing some info or even passwords(dashlane is an example!)

the speed of syncing is great when you make a change in one device it syncs super fast with your other ones, they even show a warning if the app can not sync and make you aware that it has a problem. others? nope, they don't give a warning when something is wrong with syncing.

the app development and bug squishing are really good the apps and extensions are in constant development and really stable. features get added fast. unlike Dashlane or Bitwarden

if you read the news they are the fastest in terms of resolving security issues and really transparent, unlike Bitwarden which resolves some security issues after 4 years!!.

1Password is one the most audited password managers, their codes get reviewed many times per year.

as you see the level of thoughtful and practical details is head and shoulders above from what other password managers offer. the attention to detail,security, level of transparency, speed, UI, etc is different from what normal password managers like Proton Pass offer. a list of details and features can go on but I think its enough šŸ˜„.

edit 1 :
I think I should add more info about the mobile apps of 1Password and how they are different from other password managers it seems you want some info about mobile app support too:

about mobile apps 1Password is the only password manager with a proper desktop-like extension for Safari in iOS, it shows inline login suggestions like the desktop app under the selected field like a desktop experience. it's the most powerful in Android browsers support, not slowing down the surfing in Android and creating a seamless experience. i tested dashlane(or its better to call them buglane) proton pass, bitwarden etc

the mobile app is actually a mini version of the desktop app, with nearly the same features and level of details.
 
Last edited:

Game Of Thrones

Level 6
Verified
Well-known
Jun 5, 2014
296
Well I used Dashlane (Very Nice) but $$$.

I used Sticky (no complaints, but not as polished)

Then I settled on Roboform (If you used the old version, this new version is REALLY GOOD, it's way better... So polished, saves immediately when u make changes, and very easy to use).
the security model of RoboForm is not good. it's not detailed it is using 100,000 round PBKDF2 which is not recommended and is super weak. relying too much on the user's master password which should be really long to make for the 100,000 round. even after that, their whitepaper is a joke. with good coding, you can have even 2 million rounds of PBKDF2, and still, the client works ok on mobile phones. the nist and opswat recommend 600,000 rounds but roboforms still uses 100,000 which LastPass used and is weak. I just don't get it.
 

tofargone

Level 6
Jun 24, 2024
264
the security model of RoboForm is not good. it's not detailed it is using 100,000 round PBKDF2 which is not recommended and is super weak. relying too much on the user's master password which should be really long to make for the 100,000 round. even after that, their whitepaper is a joke. with good coding, you can have even 2 million rounds of PBKDF2, and still, the client works ok on mobile phones. the nist and opswat recommend 600,000 rounds but roboforms still uses 100,000 which LastPass used and is weak. I just don't get it.
ty for the heads up, will go back to sticky. I wonder if Robo is aware of the risks as you have just stated?
 

tofargone

Level 6
Jun 24, 2024
264
No, I meant to say, you know as a Bot of course I can't use a password manager...

Sure likely excuse...Come on bot (I mean Ted) tell the truth, you are not a bot after all.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top