DrQuantum

DrQuantum t1_jdpqmlx wrote

It honestly astounds me how easily managers and ceo’s can fuck over their entire business in one easy move and they have no idea.

Frictionless? Do you think entering a phone number is this really hard arduous process compared to literally scanning my body parts?

Insane. Absolutely insane. If I was an engineer at Panera I would be packing my bags. No way this guy has the chops to keep such an expensive sandwich shop going in the coming economic trials.

40

DrQuantum t1_j1g7exl wrote

Many people here constantly says they want a meritocracy and that bias in hiring doesn’t exist. Now you’re saying immigrants are stealing your jobs and they aren’t qualified either. Its just because its exploitation.

The point I am making is that if you want to address the issue, punish the companies not the H1-B visas.

This has nothing to do with immigration if you truly believe its about exploitation. The companies are doing the exploiting and people are happy to accept lower pay because there is no good way to get in here.

1

DrQuantum t1_j1g1sy3 wrote

Security is about mitigation. Every company is a target. They will be hacked. Its about mitigating risk of those hacks. So zero knowledge architecture is what Last Pass uses. All of your data is encrypted, by your master password key. Even with encryption, they can brute force into your account. The longer and more complex your password the harder this is.

This hack happened in August. Depending on your password complexity for example, they could still be trying to get in today on just your password.

So password managers still work and as long as you prioritize best practice passwords or hopefully pass phrases you should mitigate most of the risk to your accounts.

But, you don’t want to take chances and again you mitigate risk by still resetting your password.

Generally, you can trust password managers with zero trust architecture. Last Pass has become unreputabme over time due to its practices but that doesn’t mean that if implemented correctly you wouldn’t mitigate a lot of your risk.

Its still way better to have your passwords there than sitting plain text on your PC as an example.

18

DrQuantum t1_j1g14v8 wrote

Yes and no, you need 2fa on the accounts in your Lastpass. But the encrypted fields in your account are exposed. They can crack the master passwords and then have your others. If you have a strong password, like complex 14-16 characters or more it will take brute forcers a very long time to get in.

But everyone with Lastpass should reset their master password regardless and just in case everything in it if they must stay with last pass. But really at this point they should move off the platform.

2