Yep, this has happened to me as well. Ever since that incident, I've treated "password manager isn't filling in my credentials" as a MAJOR red flag, rather than as "ugh, technology is being flaky again".
Unfortunately, phishing can happen to anyone.
Unfortunately, phishing can happen to anyone.
Why is my phone company wanting me to log in on phonecompany-secure.co?! All their ancillary tools are correspondingly half-assed, as you say.
But what I do is use an offline password manager on my phone. Yes, I have to actually read and type in the passwords that I don't have memorized, but it's a small inconvenience to get an additional security gain. Plus, it's out of the reach of IT.
That's not really saying much. It's still very dumb and insecure.