Tag: 1password

  • 1Password boosts account security with new recovery codes feature

    1Password boosts account security with new recovery codes feature

    1Password, the popular password management app, has announced a new feature called recovery codes designed to make it easier for users to recover their accounts. This new feature is part of the company’s ongoing commitment to improve the user experience.

    The new recovery codes will allow users to regain access to their 1Password account even if they forget their master password or lose their Secret Key. Before recovery codes, if users forgot their master password or lost their Secret Key, they would be locked out of their account and unable to access their data. This caused frustration and stress for both users and 1Password support.

    With recovery codes, users can create a unique code that can be used to regain access to their account. The code can be generated from within the 1Password app for Mac, Windows, Linux, iOS, Android, or 1Password.com, and should be stored in a safe and secure location.

    Recovery codes are reusable and will remain valid after they’re used. If a user recovers their account with a recovery code, they will be asked to create a new master password and will receive a new Secret Key. The new Secret Key will be used to log in to the 1Password account on all devices.

    1Password has stressed that the introduction of recovery codes does not change the security of 1Password accounts. The company claims that the recovery process is safe and requires two separate steps to complete: email verification and the recovery code. That said, Secret Keys are not going away, and recovery codes are intended to be used only if the user forgets their master password and/or loses their Secret Key.

    Family Organizers of 1Password Families accounts will still be able to recover accounts for other family members. However, recovery codes will give family members an additional option to regain access to their accounts themselves.

    According to 1Password, millions of people trust the company with their sensitive information. As such, the introduction of recovery codes is a welcome addition to provide peace of mind to its users.

  • 1Password rolls out support for Passkeys in beta for browsers

    1Password rolls out support for Passkeys in beta for browsers

    Following its announcement that 1Password was all in on passkeys and were ready to say goodbye to the old-fashioned password, the company is now rolling out passkey support to its users. This initial roll out will only be available in beta, with some caveats.

    Just as major players such as Google, Apple, and Microsoft have joined the FIDO alliance in order to come up with a solution that can replace the use of passwords, and therefore make logins more secure, 1Password made the move last year to join as well. This solidified 1Password’s commitment to taking the next big step and provide passkey support in its very popular password manager.
    Today, the company announced that the day is here and that its users can now begin to save and sign in to online accounts using passkeys. This can only be accomplished using the beta version of the 1Password extensions for Chrome, Firefox, Edge, and Brave (on MacOS, Windows and Linux), and Safari on MacOS.
    Additionally, the 1Password apps for Mac, iOS, Windows, Android, and Linux have also been updated so that users can view, modify, move, share, and delete any passkey that have already been generated using the beta extensions. Also, 1Password’s Watchtower feature — which alerts you when a site has been hacked and recommends when you should change your password — has also been updated in beta to alert you when a site that you log in to has added passkey support.
    To get started with using passkeys on 1Password, you will first need to make sure you have installed the beta extension for the supported browsers mentioned above. Once installed and logged in to, you should be able to open a passkey-enabled website.
    If this is the first time you visit that site, you can create an account for it with the option to use a passkey instead of a password. However, if you are visiting a site you already have an account for, you can sign in as usual and then search for the passkey login option in your account settings and update/save your passkey credentials.
  • Nearly 35,000 PayPal user accounts were hacked due to reused passwords

    Nearly 35,000 PayPal user accounts were hacked due to reused passwords

    Nearly 35,000 PayPal user accounts have been breached by so-called “credential stuffing”. PayPal managed to stop the two-day intrusion and reset the affected users’ passwords.

    In fact, PayPal’s own servers weren’t hacked. The reason for the hack was the so-called “credential stuffing”, a technique the hackers used to gain access to the user accounts. This type of attack is when a hacker uses previously leaked login info – and if the user has reused it for their PayPal account, the hacker can get access.

    The intrusion reportedly lasted two days, between December 6 and December 8, 2022, and it affected 34,942 user accounts. It is possible that the hackers were able to access a significant amount of personal information for the affected users, including full names, birth dates, postal addresses, social security numbers, and individual tax identification numbers. On top of that, hackers had access to transaction histories, connected credit and debit card details, and PayPal invoicing data.

    However, PayPal was able to stop the attack and reset the passwords for the users so the hackers would lose access. The popular online payments platform reassures that no unauthorized transactions were attempted. The affected users also get two free years of credit monitoring from Equifax.

    All in all, this could have become a very bad situation if the hackers were trying to make transactions from the affected users’ accounts. Fortunately, this didn’t happen. The entire situation shows that not reusing the same password across platforms (especially PayPal or other payment platforms) is of primary importance.

    Basically, PayPal wasn’t hacked; so if the users had not reused passwords, they wouldn’t have been hacked either. So, better not to reuse passwords. If you’re having trouble remembering all your passwords, you can use a service like 1Password or other password managers. Also, you can benefit from PayPal’s two-factor authentication for an even tighter security of your account.

  • Google announces five new features coming to Chrome for iPhone and iPad

    Google announces five new features coming to Chrome for iPhone and iPad

    If you have an iPhone and don’t like Safari, chances are you’re using Google’s internet browser, Google Chrome. If that’s the case for you, you’ll be delighted to hear that Google Chrome’s latest update for iOS is now bringing some very useful features, including improved security, a redesigned main screen, and more.

    Google has recently been bringing loads of updates to its Chrome browser. Now, some update love is being sent to its iOS version, and Google has announced some new features coming our way. Let’s see what these are.

    First off, we have Google’s Enhanced Safe Browsing feature. This one is a security-centered feature that proactively warns you about dangerous websites you are about to visit. Enhanced Safe Browsing has been available on Android and desktop for months now, and it’s finally made its way to iPhone users.

    The feature works by sending real-time data to Google Safe Browsing to check for malware, phishing, and other dangerous animals that lurk in the Internet’s dark corners. This way, you’ll get warned if you encounter a dangerous website.

    Speaking about security, Chrome for iOS also gets another useful feature: alerts for compromised credentials. iOS’ own password service does warn you about those, but it’s never a bad thing to get two warnings if you have a compromised password: you know, hackers can use this to access some of your accounts, so better be vigilant about it.

    To enable Enhanced Safe Browsing, update your Chrome app, and then go to Chrome > More > Settings > Enhanced Safe Browsing (you can do that from iPhone or iPad).

    Moving on, another useful features coming to Chrome for iOS is called “Chrome Actions”. This is a quality-of-life feature that lets you easily perform a certain tasks without having to dive deep into the app’s settings to find it.

    To use Chrome Actions, you simply need to type into the address bar of Chrome what you want to do. Examples include typing “Clear Browsing Data” or “Open Incognito Tab”, and even “Set Chrome as Default Browser”.

    Additionally, Chrome can also predict when you will need a Chrome Action by the words you are typing in the address bar, so you don’t need to memorize all the commands to benefit from this feature. Since 2020, the desktop version has had it, and Android users got it in April 2022, but it’s never too late to get something useful like that.

    But that’s not all. This new update lets you set Google Password Manager as your Autofill provider, if you want to do so. This comes as an alternative to Apple’s own password service, as well as third-party tools such as 1Password or Dashlane.

    The app’s main screen also has a new look now with this new update. The main screen now includes more than just your recent tabs, adding access to your Discover feed. Unlike the previous features, that’s something the Android version of Chrome is yet to get, and Google has stated it will be available in the future.
    The update also brings some minor changes as well. There are improvements of Google’s website translation feature. This will help you see websites in your preferred language (the feature uses on-device machine learning), and it is now getting an updated language identification model. Pretty much, this means the app will be able to more accurately recognize the language of a webpage and whether it needs to be translated for you.
    Other minor tweaks include the ability to manage camera and mic permissions for specific sites, and the ability to download and add iCalendar files to your Calendar.