61
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
this post was submitted on 25 Aug 2023
61 points (96.9% liked)
Firefox
17302 readers
184 users here now
A place to discuss the news and latest developments on the open-source browser Firefox
founded 4 years ago
MODERATORS
As said previously, strongly strongly recommend not using browsers to store passwords and paiement cards. Bitwarden and keepass are well known good options, but if you trust Proton you should try their new password manager Proton Pass which has a free tier (not affiliated to them) For the moment I still have an active license on 1password so haven't switched over yet
People keep repeating this. But I've never really heard s good reason for why a separate password manager is any more secure.
On top of what has been said on lower security, this is also much worse in terms of privacy. You are giving up your credentials to Google/Mozilla.
Also they do not encrypt (when they do at all)website URLs, only the secret parts (passwords) so this is a downside as well. Anyone getting access (or Google/Mozilla) of the encrypted vault knows what apps/sites you have accounts on. Some password managers do encrypt everything
But yes, primarily it is way easier to steal passwords from a browser, especially when it's synced across many devices including some with lower security (a phone with just a pin, a phone lent to other people, a computer or tablet or phone let open to anyone to change music on Spotify, ...)
Source: https://support.mozilla.org/en-US/kb/how-firefox-securely-saves-passwords