Is this not the equivalent of judging Windows usage based on visits to microsoft.com?
Is this not the equivalent of judging Windows usage based on visits to microsoft.com?
I created a Dropbox account (which I do use) a couple years ago, and last week I visited the site for the first time in almost as long as I've had the account.
A word of warning to you, since you don't access the site often: your password expires, and you'll need access to your email account when it does.
My laptop semi-died last week (it's not actually dead, but I couldn't get it to boot at the time), so I used my girlfriend's to order a new one.
I keep my KeePass database in my DropBox for just such occasions, so I tried to log into Dropbox's web interface to retrieve it and access my account on the computer retailer's website. Dropbox accepted my password, but told me I couldn't continue until I changed my password, which required clicking a link they had sent to my email account.
Unfortunately, the password to my gmail account is also in KeePass, and is an incomprehensible mess of generated gibberish that I don't know, so I couldn't get in. I had to reset my Google password using an email account that is apparently on file with Google, in order to reset my password with DropBox, in order to access my retail account with the laptop vendor.
I don't know if this would have been easier had I known about DropBox's two-factor authentication before this, or if maybe I could have installed DropBox on my girlfriend's laptop and got in that way without needing to reset anything, but I ended up burning half an hour on this because I didn't know I had to keep my password constantly up to date on their website.
It seems like an obvious thing to do, but for something like Dropbox which is just "always there" on your local machine, it's an easy thing to forget.
Some people rely too much on "one password" solutions, because of security, etc
But it's very easy to lock yourself out of everything. Very easy.
The best place for keeping important passwords is still my head.
Sure, you can use password management solutions, just keep a backup (piece of paper, secondary means of logging, etc)
I think that a software password manager (regularly backed up) with a master password stored in a secure (offline) location is the best solution.
And don't forget to test the backups periodically, and check the master password
I've corrected that assumption now.
https://krebsonsecurity.com/2012/07/dropbox-password-breach-...
I'd delete my comment now, if I were still able to.
Personally, I don't think I've been back to the Dropbox website since I reset my password!
My reply was merely a "mea culpa", and the note about removing the previous comment was more about removing inaccurate information than about saving face.