Internet users' password dilemma
Since the birth of the Internet, password security has been a major problem. Now, the use of passwords has penetrated into all aspects of life. The phenomenon of password loss, theft, forgetting and leakage is common, and the resulting security incidents are also increasing. So, in this age of privacy, how can we protect our password security?
Security experts tell us that a password must be long enough to be secure enough, and it should include upper and lower case letters, numbers and symbols, not common combinations of letters and numbers. Just think about it. This kind of password is very complicated and hard to remember.
Security experts also told us that you can't use the same password on many websites. It's better to use different passwords on each website.
Security experts also told us that it is best to change the password every once in a while.
The question is, if you have 100 groups of account passwords, according to the advice of security experts, each group is very complicated, and each group is different. Change it every other time. How can you remember it?
The answer is to use the Password Manager.
Password Manager
The password manager, as its name implies, is a tool that can manage passwords. In general, a full-featured password manager should include the functions of password creation, generation, storage, classification, query, modification, deletion, filling in, backup, recovery, etc.
At the same time, because passwords naturally have security requirements, the first consideration of the password manager is security, trying to prevent cracking, peeping, loss, theft, damage and other risks. Secondly, it is convenience, that is, the richness and completeness of functions, and the user experience in actual operation.
Therefore, a good password manager should make it easy for you to use various complex passwords without worrying about various security risks.
At present, various popular password managers include Jimi Shield K2, 1Password lastpass、dashlane、 Google online password manager, onesafe, etc.
There are so many password managers, which one is your dish? Let's give a brief introduction.
Extremely dense shield K2
Jimi Shield K2 is the only hardware product in this evaluation. Since this kind of software is very common in the market, but the hardware is very rare, our main space is devoted to the introduction of Jimi Shield K2.
It is rare in China to protect virtual assets such as account passwords and private information through a piece of hardware. Psychologically, hardware is more reassuring than software. Is that true? Let's have a look.
Jimi Shield K2 is produced by the domestic manufacturer "Jimi Technology". This security manufacturer seems to have its own mysterious attributes, and it doesn't appear much on the market. At present, the information we have is that the company focuses on Internet users' password security. In 2014, it began to focus on the research and development of related hardware products. The latest product is Jimi Shield K2. Its parent company, "Shanghai Linguo", has been providing security products and services to major banks and financial institutions for more than a decade. It is a well-known security manufacturer in China.
Then look at the product. The size of the extremely dense shield K2 is about the same as that of the ordinary USB flash drive. The shape is square and angular. The whole body (including the buttons) is made of solid zinc alloy. The whole body is printed with color, which makes it full of science and technology.
A long hole with flat round ends is designed at the right side for hanging on the key ring.
The design is simple. There is a monochrome anti spying display screen on the front. There are two buttons "OK" and "CANCEL" on the top. The "Cancel" button is also the power key; The left side is the mini USB charging port. This is all the visible elements.
The accessories are very simple. There is only one charging cable with mini USB interface.
When using the JMD K2, you need to connect your mobile phone or PC, you can connect your mobile phone via Bluetooth, and connect your PC via USB. Jimibao is a software used to connect and manage Jimidun, which supports IOS, Android and PC. The following evaluation takes mobile phones as an example.
The functions of Extreme Secret Shield K2 include password management, secret stripe management, automatic password generation, backup and recovery, and firmware upgrade.
It is very convenient to enter the account password. The video below intuitively shows the simple and easy use of the Extreme Shield K2.
If you want to set a password for a new account, you can use the "Shake to generate a password" function.
The concept of secret note is not easy to understand. In fact, it is a security notepad. Users can save some important text information into "secret" strips.
After the successful Bluetooth pairing connection with the mobile phone, the user needs to activate and bind the account for the first time. The bound account is permanent and cannot be modified. It is guaranteed that it will not be used if someone else takes it away.
In terms of storage, the storage mode of the Extreme Secret Shield K2 is completely different from that of the encrypted USB flash disk and the encrypted hard disk. The encrypted USB flash disk and encrypted hard disk only use some encryption algorithms for encryption, and the ordinary flash chip is still used for storage of data; Jimi Shield K2 uses a professional encryption chip used by a large encryption machine, and any data processing is encrypted by hardware, with high security.
In terms of algorithm, Extreme Secret Shield K2 adopts the national secret algorithm issued by the State Password Security Administration. The national security algorithm has been used in banking, finance, national defense and other fields for many years, which has been tested and trusted.
In design, JMOS, a self-developed closed system, is run independently by Jimi Shield, which is completely immune to viruses and trojans on Android, Apple and Microsoft platforms.
An independent display screen is used. Once the password is entered into the EMD K2, it will not be transmitted. When it needs to be viewed, it will only be displayed on the display screen.
Encrypted backup is adopted. During the backup operation, the backup data on the mobile phone is also encrypted by hardware to avoid various interception risks.
As an intelligent device, the firmware upgrade function is naturally necessary. With the firmware upgrade, JMD K2 will get more safe and useful functions.
In addition, Extreme Secret Shield K2 has passed the security test of the State Password Security Administration and obtained the product batch number issued by it; It has passed the EAL4+security certification with the highest security level in China. These two authoritative certifications are enough to endorse its security.
After three days of use, I feel that the advantages of the extremely dense shield are obvious:
1. Data entry, modification, deletion, backup and recovery are smooth and comfortable; The system is very stable;
2. Forgot the password and check it at any time. It is really convenient and the brain has no burden;
3. The password is protected by hardware, with a strong sense of security.
At the same time, there are also some shortcomings. I think this is due to the manufacturer's overly strict safety design, and I will also mention here:
1. When using the Extreme Secret App, the password in the Extreme Secret Shield cannot be automatically filled in to the browser (it can be used when using the PC client), but can only be checked in the Extreme Secret Shield K2 and manually entered, which is inconvenient;
2. To save, modify or delete the password, you need to press the "OK" key to confirm it. If you need to input a large number of account passwords, you need to operate the mobile phone and the Extreme Secret Shield K2 back and forth, which makes you feel disconnected.
Conclusion: The encryption chip used by the large encryption machine, together with the national security algorithm, the independent OS, and the two major authoritative authentication, is used by the Extreme Secret Shield K2 to ensure security. The overall use is smooth and comfortable, and the experience is very good. The disadvantage is that the mobile phone lacks one key filling.
Safety: ★★★★★
Convenience: ★★★☆
Platform support: IOS/Android/windows
1Password is a cross platform password management software from Canada, which has been well-known in the industry for a long time. It uses AES256 bit encryption with high security. Many people at home and abroad are using it. It also provides the function of "generating security password", just like the Extreme Secret Shield K2.
1Password can synchronize data to Dropbox or icloud, or it can be stored locally and then synchronized with other applications.
1Password uses single user and single platform authorization. Even if you want to use 1Password, you need to purchase it separately on the Mac and Windows platforms. Although its iOS and Android applications adopted the pricing strategy of free+value-added services last year, if you want to use full functions, you must purchase them internally.
1Password supports the rapid addition of account passwords by site, but it is not convenient to use the list type interface layout, and most of the sites provided are foreign websites. When used by Chinese people, there is always a feeling of acclimatization.
In addition, when adding a website, 1Password does not recognize the logo of domestic websites well, and only displays the default unified logo.
At present, 1Password has a good reputation in terms of security. Although it is reported that there are also security risks in its design, no security incidents have been reported so far.
Safety: ★★★☆
Convenience: ★★★★
Platform support: IOS/Android/windows/Mac
LastPass is an excellent password management software that currently supports all mainstream browsers and operating systems.
LastPass also uses AES256 bit encryption and completes encryption and decryption locally.
LastPass provides a variety of two-step verification methods. After checking the security of your password, LastPass will prompt you whether your password needs to be more difficult. It also provides the function of automatically generating random passwords, as does Extreme Secret Shield K2.
A few years ago, Lassspass meant to catch up with 1password, but the fatal point of lastpass was that it had several security incidents. Therefore, in the eyes of many people, lastpass has been far behind 1password
Safety: ★★☆
Convenience: ★★★★
Platform support: IOS/Android/windows
DashLane is a relatively new one in the password manager. It also encrypts personal information and account passwords through AES256 bits, and then synchronizes them to the server.
The best thing about DashLane is that it can automatically change your password, so you don't have to deal with it yourself.
DashLane has two major functions: password safe and automatic form filling, which can automatically fill your password into the website. Its APP is completely free when using a single device, while access on multiple devices requires the purchase of an advanced version.
Safety: ★★★★
Convenience: ★★★★★
Platform support: IOS/Android/windows
Google Online Password Manager
Google Chrome has a built-in password management tool that can store all your passwords when using Chrome. All these passwords are synchronized through Google account and can be used on Chrome browser of all your devices.
If you use another browser, such as Edge or Safari, you can visit passwords. google. com to view all your passwords.
Safety: ★★☆
Convenience: ★★★☆
Platform support: Google Browser, web
OneSafe can not only store your account password, but also store sensitive documents, credit card information, and even photos.
OneSafe can support two unlocking methods: master password and Touch ID, and can also set additional passwords for specified folders.
OneSafe also provides the browser's automatic form filling function, so you no longer need to fill in your login information every time.
The software also provides other functions, such as automatic locking, intrusion detection, self destruction, etc.
Safety: ★★☆
Convenience: ★★★★
Platform support: IOS8 and On/Android 4.4 and above/Windows XP and above
Horizontal multi-dimensional comparison
First place: JMD K2
Through a series of security designs such as professional encryption chips, national security algorithms, autonomous JMOS system, independent display, data and management separation, the professional security manufacturer with senior security background has obvious advantages in terms of technology. Its product, Jimi Shield K2, is almost impeccable in security, surpassing all other password management products.
Second place: 1 password
Through AES256 bit encryption, classic password management software. Although some articles question the security of 1Password, after years of testing, no security incidents have occurred and the security is very high.
third: dashlane
Through AES256 bit encryption, the relatively new members in the password management software have a good reputation. Up to now, there have been no security incidents or doubts.
the first: Dashlane
DashLane can not only manage account passwords and privacy information, but also has cloud backup, automatic password generation, automatic password modification, automatic form filling and other functions. The software can be managed seamlessly across platforms.
Second place: Jimi Shield K2
Jimi Shield K2 can manage account passwords and privacy information, and has functions such as encryption backup, security recovery, automatic password generation and one key saving, firmware upgrade, etc. It supports multiple platforms to achieve seamless management.
Third place: 1 password
Classic password management software, which manages account passwords, can be backed up to the cloud. Although its own browser is inconvenient to use, it can achieve one key filling, support multiple platforms, and perfect seamless management.
Because some products have different charging strategies in different countries and platforms, we only use the price of the product in the IOS platform in mainland China for comparison.
the first: onesafe 4
25 yuan, no internal purchase, single user, lifetime use. The APPstore can be purchased at.
Second place: Jimi Shield K2
318 yuan single user, single device, multi platform synchronization, lifetime use. If calculated according to the 5-year service life, it is about 63 yuan per year. JD Taobao is available, and APP can be downloaded for free in the APP store.
third: Dashlane
Single user, single device free of charge; Backup to cloud 70 yuan/year; Multi platform data synchronization requires upgrading to the advanced version, which costs 199.6 yuan per year. APP can be downloaded free of charge in the APP store.
summary
Among the above password managers, the most impressive one is Jimi Shield K2.
There are two problems with the above software versions of the password manager: although multiple computers and mobile phones can synchronize passwords, which is very convenient, they rely too much on the network when using them, and the server side is at risk of being attacked.
In comparison, the national security algorithm and security chip of the Extreme Secret Shield K2 have obvious advantages: the national security algorithm is issued by the State Password Security Administration, which has good encryption and high security; The security chip adopts the professional security encryption chip used by commercial encryption machine, which is far more secure than other pure software running on the open system.
In addition, according to reliable information, JMD K2 will introduce a new feature in the latest upgrade: Bitcoin wallet. This is definitely a good news for Bitcoin "miners". In the future, users can encrypt and save their bitcoins in Extreme Secret Shield K2 to ensure security.
As a brand new password manager hardware, JMD K2 is superior to other products in terms of security, comprehensive functions and excellent experience. It can be regarded as an excellent password manager.