n
22

Vent: coworker swore by that password manager, nearly cost us the client

My teammate Dave pushed Bitwarden on our whole team back in April, said it was bulletproof. Three weeks ago his master password got phished through a fake login page, and our shared vault had the keys to a client's AWS account. We spent 2 days explaining to the client in Austin why their staging servers got wiped. He's still claiming it was 'social engineering, not the tool', but I'm done trusting any single vault without hardware keys. Anyone else ditched a password manager after a close call like this?
1 comments

Log in to join the discussion

Log In
1 Comment
michael_craig
Damn, that's exactly why I barely trust cloud password managers now.
3