Leo to [email protected]English • 2 years ago1Password discloses security incident linked to Okta breachwww.bleepingcomputer.comexternal-linkmessage-square46fedilinkarrow-up1267arrow-down18cross-posted to: [email protected]
arrow-up1259arrow-down1external-link1Password discloses security incident linked to Okta breachwww.bleepingcomputer.comLeo to [email protected]English • 2 years agomessage-square46fedilinkcross-posted to: [email protected]
minus-squareAnoxydrelinkfedilinkEnglish27•2 years agoExactly. Accounts are locked with both password and encryption key. The latter is not known by 1Password.
minus-square@[email protected]linkfedilinkEnglish4•2 years agoTo be accurate, they don’t know either. A login key and a decryption key are derived from password and secret key client-side.
Exactly. Accounts are locked with both password and encryption key. The latter is not known by 1Password.
To be accurate, they don’t know either. A login key and a decryption key are derived from password and secret key client-side.