22
Vent: coworker swore by that password manager, nearly cost us the client
My teammate Dave pushed Bitwarden on our whole team back in April, said it was bulletproof. Three weeks ago his master password got phished through a fake login page, and our shared vault had the keys to a client's AWS account. We spent 2 days explaining to the client in Austin why their staging servers got wiped. He's still claiming it was 'social engineering, not the tool', but I'm done trusting any single vault without hardware keys. Anyone else ditched a password manager after a close call like this?
1 comments
Log in to join the discussion
Log In1 Comment
michael_craig15d ago
Damn, that's exactly why I barely trust cloud password managers now.
3