6 hacks to secure ANY password manager you use!

Ғылым және технология

It doesn't matter which password manager program you use, these six tricks are a simple way to build even greater privacy and security for your online logins. Also, check out Trend Micro's Premium Security Suite, which offers complete device and identity protection for up to 10 devices: bit.ly/3DqMvCs Use code ATS10 (case sensitive) for 10% off your purchase!
Do you prefer a written version of this content? Find it here: www.allthingssecured.com/revi...
Resources mentioned in this video:
▶ How to Use Aliases: • STOP Giving Your Real ...
▶ How to Create a Double Blind Password: • Password Manager HACK ...
▶ How to Set up a 2FA Key: • Setup a 2FA Key for MA...
If you care about your personal security and privacy online, download my free security checklist here:
✅ Security Checklist: www.allthingssecured.com/secu...
🔹🔹🔹What You Should Watch Next🔹🔹🔹
We've got a lot of great privacy- and security-related content here on the All Things Secured KZread channel (although we admit we're a bit biased). If you're wanting to increase your online cybersecurity, here's what's next:
✅ What are Passkeys and are they the future of Online Security? • Google Passkeys Have A...
✅ STOP Using Your REAL Credit Card (here's how): • STOP Using Your Real C...
✅ Free Security Tools EVERYONE should use: • FREE Security Tools EV...
🔹Support All Things Secured (Recommended Services)🔹
If you enjoy this kind of practical security and privacy content, one of the best ways you can help support this channel is by using these affiliate links to our favorite products and services. When purchasing through these links, you not only get the best available deal, the companies will also pay us a small commission. Thank you for your support!
✅ Recommended Password Manager: www.allthingssecured.com/yt/1...
✅ Recommended Identity Monitoring: www.allthingssecured.com/try/...
✅ Recommended 2FA Security Key: www.allthingssecured.com/yt/y...
✅ Recommended Secure Email: www.allthingssecured.com/try/...
✅ Recommended VPN: www.allthingssecured.com/try/...
*********************
Video Timestamps
*********************
0:00 - Taking full advantage of your password manager
0:24 - Remove the Risk of Password Managers
1:31 - Secure both Username AND password
2:15 - Lock down your password manager
3:00 - Secure your devices with Trend Micro (sponsored)
3:39 - Don't Tell the Truth on Security Questions
4:35 - Find & Fix Your Weakest Link
5:43 - Prepare for Worst Case Scenarios
*********************
Hopefully you already use a password manager app to secure your online logins, whether that's 1Password, Dashlane, Bitwarden, NordPass, Proton Pass or Roboform. But are you taking FULL advantage of the security that these programs can provide? In this video, Josh explain six simple tips you can use to build upon the strong foundation of password managers.
#passwordsecurity #cybersecurity #trendmicro #premiumsecuritysuite #antivirus

Пікірлер: 43

  • @AllThingsSecured
    @AllThingsSecured10 ай бұрын

    Yes, it bothers me that my collar was bunched up, but I discovered it too late to re-shoot. Oh well ¯\_(ツ)_/¯ Be sure to check out this week's sponsor, Trend Micro. Get 10% off their Premium Security Suite using code ATS10 at checkout: bit.ly/3DqMvCs

  • @christopherhartline1863

    @christopherhartline1863

    9 ай бұрын

    Didnt even notice

  • @technerd020
    @technerd0209 ай бұрын

    I can’t stress the security questions advise enough - especially for banking accounts, never enter real answers to those questions. Always enter fake answers and store them in your password manager as Josh said. Thanks, Josh. I don’t see much people talking about this one, so I’m glad you did.

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    🙏👍🏻

  • @ionamygdalon2263
    @ionamygdalon22639 ай бұрын

    One can use the "bugs bunny" method. Password Manager 1 has "bugs" and the second Password Manager has "bunny". Neither of them have your password and one can even add something like "pi=3.14" which contains letters, numbers and symbols. This means that even if someone has accessed both of your Password Managers they still cannot log in to your bank.

  • @klauserwin9860

    @klauserwin9860

    9 ай бұрын

    The pi part is called a "pepper". Something only you know, but is nowhere written down or stored.

  • @LaMeanieLoka-issmrt

    @LaMeanieLoka-issmrt

    7 ай бұрын

    @ionamygdalon2263

  • @LaMeanieLoka-issmrt

    @LaMeanieLoka-issmrt

    7 ай бұрын

    OK lay

  • @dxvxdffm
    @dxvxdffm9 ай бұрын

    For the security questions: 1Password actually has a field for this to randomly generate them. Its not needed to be stored in the notes of the password item. Pretty neat.

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    Really?! I haven’t seen that yet…and I’m a 1Password user 🤷‍♂️

  • @TimOfKenya

    @TimOfKenya

    9 ай бұрын

    @@AllThingsSecured you can also change the question, so you're not struggling to associate the default questions given with 1P, and the actual question

  • @mateusestudos9451
    @mateusestudos94519 ай бұрын

    Great video! The aditional caracters inside a password that is generated by a passaword manager was the best point for me

  • @kfffisher
    @kfffisher9 ай бұрын

    Always GREAT information! Thank you!

  • @OrdinaryJacob922
    @OrdinaryJacob9229 ай бұрын

    Thanks, Always insightful!

  • @waelibraheem3027
    @waelibraheem30273 ай бұрын

    Hi Josh Thank you very much for thise tips. This is the best video related to this topic that I have ever seen so far.

  • @samsmusichub
    @samsmusichub10 күн бұрын

    Nice thanks.

  • @Rodrigo-eb2nn
    @Rodrigo-eb2nn9 ай бұрын

    Did you use the bitwarden? Which password manager do you use? Thanks

  • @gabrielmichaelyoung
    @gabrielmichaelyoung8 ай бұрын

    Using Apple's Keychain as a passwaord manager, how can I create double blind passwords? Keychain automatically enters my password before I can add my own additional phrise that only i know. Appreciate your insights on how I can use Double Blind in Keychain.

  • @JadeSambrook
    @JadeSambrook9 ай бұрын

    Thank you, Josh, for another helpful and informative video (as they always are). Now I am curious to know, when you mention that you have a 2FA authenticator code and two security keys that you use with your password manager (02:33) what are the best practices in this case? To be more clear, what I am wondering when using security keys like the Yubikey is whether I should have my authenticator code on a separate app like Google Authenticator or Authy, or if I should only be using Yubico Authenticator? Ive also been wondering (since I am new to using security keys) if having 2FA codes stored in an authenticator app defeats the purpose of having the security keys? In other words, is it not best to only use the security keys and no authenticator apps for the 2FA in any account settings?

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    Great question. Your security is only as strong as your weakest form of authentication, so you’re correct in wondering about Authenticator apps. In this case, my Authenticator app is another Yubikey, so I’m essentially backing up my password manager with 3 keys instead of two. Using Authenticator codes isn’t bad, but if you’re looking for the strongest possible form of security, keeping only 2FA keys and writing down the backup code/key phrase is best.

  • @JadeSambrook

    @JadeSambrook

    9 ай бұрын

    @@AllThingsSecured Thank you for the quick reply. I think a video on this subject would be great as there is maybe a little confusion for many (like me) on avoiding weak forms of authentification when using security keys. For example, when I first got my Yubikeys and set them up with my Facebook account I was not sure if I should turn off the other 2FA options (like SMS and Authenticator app) so I just left them all turned on. Then, after watching so many of your videos I learned that the SMS option is not the most secure and so I turned it off. But I still have the option to receive 2FA codes through an Authenticator app turned on despite having the Yubikeys, because I am not sure of the best practices. So now, I will try and do like you and get rid of my ''weakest form of authentication'' by getting a third Yubikey.

  • @SamuelThibaud
    @SamuelThibaud9 ай бұрын

    Thank you Josh 👍😄

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    My pleasure!

  • @asd2u2004
    @asd2u20049 ай бұрын

    Hi , how do you deal with your master password for the password manager ? I’ve got a yubikey as 2 factor but I still need my master password . Do you have a simple memorable password because of 2fa ?

  • @joshhuber130
    @joshhuber1309 ай бұрын

    How do you do the password salting or whatever you called it?

  • @wowo7219
    @wowo72199 ай бұрын

    Double blind approach is no longer useable with Passkeys right ? Is that a security concern using it?

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    Correct. I don’t think it’s possible with passkeys, but I think we’re still many years away from widespread adoption of passkeys, so it’s still a valuable technique.

  • @christopherhartline1863
    @christopherhartline18639 ай бұрын

    Have you made a video to describe how to 'un'(re)do accounts that are using the same username for credentials?

  • @sirajpatel1768

    @sirajpatel1768

    9 ай бұрын

    I think that depends if the services/websites allows you to change the username or not.

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    Yea, in many cases you can’t change the username on existing accounts, but you can start creating stronger ones moving forward.

  • @stevenjb.9275
    @stevenjb.92759 ай бұрын

    I would not use an email Alias for a bank account. In case the alias fails. I am having an email Alias issue/error with Proton Pass browser extension generated aliases - Proton notified.

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    Sorry to hear that. Personally, I recommend using a separate, encrypted email account for sensitive accounts such as banking and investments.

  • @joshhuber130
    @joshhuber1309 ай бұрын

    But how do you remember the last part of the password for like Facebook

  • @manny7886

    @manny7886

    3 ай бұрын

    Use the same for all the sites that you have an account. For example add your birth year (i.e. 1980) at the end of your auto-generated passwords. In this example you only need to remember to type 1980 at the end of your password to every site that you need to login.

  • @rjain1993
    @rjain19939 ай бұрын

    ❤️‍🔥🔥👍🏻

  • @apocalypse487
    @apocalypse4879 ай бұрын

    The biggest problem I'm facing is that quite a bit of websites have a character limit.

  • @ShumonM
    @ShumonM9 ай бұрын

    The 'removing the risk' bit just adds unnecessary complexity for most people. In the UK, Cyber Aware has done studies on why people don't use password managers - unfamiliarity with what they do, and the perceived complexity were the main reasons most people don't use them.

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    You make a good point. And this video isn’t aimed at people who aren’t using a password manager. I’m more talking to people who already do and who are willing to consider even stronger forms of security.

  • @bobstovall9570
    @bobstovall95709 ай бұрын

    2FA solves this problem without a PW manager.

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    In some ways yes, but 2FA doesn’t remove the need for a password manager yet.

  • @harag9
    @harag99 ай бұрын

    Great video, many thanks for reminding everyone about these tips. I myself recently switched to 1password, and the kit creation was done - My wife was so pleased now, always been a worry for her if anything happens to me.

  • @AllThingsSecured

    @AllThingsSecured

    9 ай бұрын

    Agreed. 1Password makes it very easy.

Келесі