Bitwarden
-
iOS App Now in General Availability
> The Bitwarden native iOS app is now in General Availability (GA), allowing iOS users to fully experience enhanced performance and an improved user experience. Whether you’re new to Bitwarden or a long-time user, explore this latest update by downloading the app here. > >For feedback, add comments to this Reddit thread, Going native: The future of the Bitwarden mobile app, or provide feedback in the beta section of the community forum!
-
Can I use a yubikey with free-tier bitwarden?
Their docs say it requires BitWarden Premium (security seems like a weird thing to paywall but hey I'm grateful there's a free option at all!) but I've seen a few older posts saying you can still set up a yubikey on the free tier using some kind of TOTP mode. Has anyone tried this, or knows how it works?
-
New! Inline autofill for cards and identities
bitwarden.com New! Inline autofill for cards and identities | Bitwarden BlogSecurely use cards and identities from the Bitwarden browser extension with this new update!
- community.bitwarden.com Important update: Native Bitwarden mobile apps coming soon
Exciting news for users as Bitwarden Password Manager apps on the Apple App Store and Google Play Store will soon be upgraded to native applications for iOS and Android! To learn more about the native apps check out this blog: Bitwarden releases phased beta for native mobile apps Here’s what you ne...
-
Release 1.32.0 · dani-garcia/vaultwarden · GitHub
github.com Release 1.32.0 · dani-garcia/vaultwardenSecurity Fixes This release has several CVE Reports fixed and we recommend everybody to update to the latest version as soon as possible. CVE-2024-39924 Fixed via #4715 CVE-2024-39925 Fixed via #4...
Update ASAP.
-
Question about autofill security
I understand that if you have Bitwarden (or any password manager or browser) configured to autofill your password when it encounters a "password" field on a web form, an easy exploit is for the web form to have hidden form fields (e.g., address, phone, email, ssn) and your autofill app will fill in your info into those fields, even though you only wanted it to autofill the login.
But when you have autofill turned off and you click in a form's "login" field and select a login from Bitwrden's contextual menu, Bitwarden automatically also fills in the "Password" field. Does this mean that the exploit exists even if autofill is turned off, as long as you're using any form of an "auto-fill" function?
-
Mother Problem
I set up BitWarden for my mum ages back and thought nothing of it. She's been using it fine and hasn't had a problem. Only, now that I've gone to set it up on a new device for her, I'm realising I don't remember her master password. Neither does she. She's been using the biometric login the whole time. Anyone know any way around this?
-
Bitwarden releases phased beta for native mobile apps
bitwarden.com Bitwarden releases phased beta for native mobile apps | Bitwarden BlogBitwarden announces the beta rollout of its native applications for iOS and Android, introducing new functionalities and optimizations.
-
The Bitwarden addon has a bug that frequently logs you out
community.bitwarden.com Bitwarden Firefox extension keeps logging outHi there, Bitwarden (premium via Family, browser extension, firefox, with 2FA Webauthn) keeps logging out. The icon becomes grey, I need to do the full login again, but email is remembered. Sometimes, the 2FA step is kept, sometimes not. It’s happening, like once a day, where it previously was onc...
cross-posted from: https://lemmy.world/post/16132410
> The Bitwarden addon has a bug that frequently logs you out
-
How to change the ports for a Bitwarden server before installing?
cross-posted from: https://lemm.ee/post/33197502
> The ports 80 and 443 are already used by Adguard Home. I didnt find any way to change those ports for Bitwarden.
-
Bitwarden transitions from Manifest v2 to v3
bitwarden.com Bitwarden transitions from Manifest v2 to v3 | Bitwarden BlogAs Bitwarden upgraded its browser extension to Manifest v3, it required a significant architectural shift in structure, affecting how the extension operated. Here's how Bitwarden made the shift.
-
Bitwarden Passkey support for ios released
github.com Release Version 2024.4.2 · bitwarden/mobileiOS App can now be used to create and sign in with passkeys.
>App can now be used to create and sign in with passkeys.
Some further context:
Right now the mobile apps are using a Framework called Xamarin which enables crossplatform mobile releases. Since it has become a roadblock for them (e.g. needed to wait for Microsoft to support passkeys in Xamarin) they are planning to switch to native apps (Swift for ios and Kotlin for android). Source
-
Bitwarden has launched a new authenticator app
bitwarden.com Bitwarden just launched a new authenticator app. Here’s what it means to users. | Bitwarden BlogStoring 2FA codes is just the beginning. Bitwarden aims to add defense in depth to authentication.
cross-posted from: https://lemmy.world/post/14912799
> >Bitwarden Authenticator is a standalone app that is available for everyone, even non-Bitwarden customers. > > >In its current release, Bitwarden Authenticator generates time-based one-time passwords (TOTP) for users who want to add an extra layer of 2FA security to their logins. > > >There is a comprehensive roadmap planned with additional functionality. > > >Available for iOS and Android
-
Have you switched any logins from Password to Passkey?
Given that passkey support has been out for a few months, I'm wondering if you've switched any of your existing logins?
-
Discover Passkeyindex.io: Your Community Hub for Passkeys
bitwarden.com Discover Passkeyindex.io: Your Community Hub for Passkeys | Bitwarden BlogPasskeyindex.io is a community-driven platform dedicated to collecting and organizing a list of services that are passkey-enabled.
-
BitWarden's "Lack" Of Self Hosted Site Support
BitWarden is my password manager of choice, I use it a lot. But one thing I find frustrating and honestly, nonsensical, is why it doesn't support ports out of the box? I have a bunch of services on different ports and would hope BitWarden would recognise that, but it doesn't? It's not a huge thing as I can always search, but it's one of those little niggly things.
-
Bitwarden releases magic links API
bitwarden.com Bitwarden releases magic links API | Bitwarden BlogBitwarden Passwordless.dev expands developer offering with magic links API.
- old.reddit.com Going native: The future of the Bitwarden mobile app
Hi everyone. I wanted to post a quick update on the plans that are progressing around the Bitwarden mobile app. For those of you that don’t...
-
Bitwarden adds a new auto-fill option right inside form fields
bitwarden.com Bitwarden adds a new auto-fill option right inside form fields | Bitwarden BlogHighly requested by the Bitwarden community, the new inline auto-fill menu greatly enhances the user experience, enabling users to fill login credentials faster than ever.
-
Bitwarden master password and public server auth
I have what may be a stupid question...
How is it your master password is both used to decrypt your vault and used to authenticate with bitwardens public servers to acquire a copy of your vault/view it in the web app, but bitwarden can't use that password entry to decrypt the vault themselves?
(please correct me if I'm misunderstanding, as I use self-hosted vaultwarden for my server instead of the public ones)
-
BitWarden versus VaultWarden
I'm wondering how many are self hosting and if there's any benefits to doing so?
-
What Bitwarden alternatives should i consider if for Passkey support is important to me?
I’m hearing people really love 1password. I believe they also were the first ones to come up with a mobile-friendly implementation prior to iOS/Android support for third party password managers.
Seems like 1password has been and is on the ball as far as having the freshest features the fastest.
-
Passkey login to Bitwarden
Has anyone heard of a timeline for this to be implemented? All I've heard is "soon".
-
Bitwarden adds support for passkeys
bitwarden.com Storing Passkeys | Bitwarden Help CenterThis article is an introduction to passkey storage with the Bitwarden browser extension.
-
Autofill on Firefox Android
Autofill with the extension seems broken for me. Anyone else with the issue?
-
So, what happened to passkey support?
I heard they were going to release it in August, but nothing happened yet.
-
How to import JSON from ProtonPass?
ProtonPass JSON is not accepted for import to Bitwarden. I have searched for information about it but I can't find the answer to this problem. Could someone provide a solution?
-
How I got Bitwarden running on Android 4.4.2!
I remember 1 year ago, asking on how to get it running on 4.4.2, but no one told me how to get it to run. So here's how to get it on Android 4.4.x. There are 2 methods to get it to run:
- With Kiwi Browser (recommended, gets security updates even tho its an older version)
- With Firefox (not recommended as it's pretty old)
```
- With Kiwi Browser (recommended as it still gets security updates)
- Install the last supported Kiwi Browser for Android 4.4
- Go to crx4chrome and download an older extension of Bitwarden (preferably the first 2022 one)
- Go to extensions and enable dev mode, and load that crx extension!
- Enjoy Bitwarden on Android 4.4.x! _________________________________________________________________________________
- With Firefox 68
- Install Firefox 68
- In Firefox lookup Bitwarden version history for Firefox, then find one of the first 2022 versions. I tried the first 2022 version and it worked, I didn't try the few newer 2022 ones, as the first one just worked but you can try newer if you want.
- Install it.
- Go to about:config, search for extensions.update.enabled and toggle it. This will disable auto updates of extensions, so bitwarden does not auto update, making the extension not work.
- Enjoy Bitwarden on Android 4.4.x!
```
-
Phishing-Website: bitwardennet
Edit (Update/Correction):
It looks like I was very likely wrong (a good thing in this case!).
According to this entry in the official Bitwarden Help Center bitwarden[.]net is official too!
Its still weired that the login failed multiple times and bitwarden[.]net doesn't redirect to the homepage, as the other official domains do, and so on.
Nonetheless, all seems to be fine, gladly. Thanks for your input.
---
I've tried to log into Bitwarden and used vault.bitwarden[.]net, it failed. Also, this page is the only one on this domain (nothing on bitwarden[.]net) and the SSL Certificate differs.
vault.bitwarden.com (and bitwarden.com) behaves as expected.
I think I've actually used a phishing site. 2FA probably safed me pretty hard. Changed creds.
-
Biometric key is stored in Windows Credential Manager, accessible to other local unprivileged processes
hackerone.com Bitwarden disclosed on HackerOne: Biometric key is stored in...Bitwarden Desktop on Windows allows the user to enable vault unlock through Windows Hello (under File > Settings > Unlock with Windows Hello). When this is done, a "Biometric master key" is generated and stored locally inside the Windows' user credential set. This is done through the "wincred" API, ...