Skip to content

The digital town square for the concert band community.

Connect with local ensembles, trade repertoire insights, and keep the pulse of the wind band world.

  • 0 Votes
    12 Posts
    0 Views
    Plan-AZ
    @RockyC @ethan256Using Aegis Authenticator alongside a separate password manager like Bitwarden is often considered a superior security strategy because it enforces defense in depth. By storing your TOTP (Time-Based One-Time Password) seeds in a different application than your passwords, you ensure that a single breach of your password manager does not immediately compromise your two-factor authentication, which is the critical second layer of defense. While 2FAS is a reputable open-source alternative, Aegis is frequently preferred by privacy advocates for its Android-exclusive focus, encrypted local storage without mandatory cloud sync, and granular control over backups, effectively keeping your "second factor" in a distinctly different "basket" with a separate attack surface.The primary argument for using a dedicated authenticator app like Aegis rather than storing 2FA codes within your password manager (or using a tightly integrated suite like 2FAS if you perceive it as too similar to your password workflow) revolves around the concept of not putting "all eggs in one basket."If an attacker compromises your password manager vault (via a weak master password, a keylogger, or a server-side breach), they gain access to your usernames and passwords. If your TOTP seeds are also stored there, the attacker has everything needed to log in to your accounts instantly. By using Aegis, which stores data in a locally encrypted vault separate from your password manager's cloud infrastructure, an attacker would need to compromise two distinct systems with different encryption keys and access methods to fully hijack an account.This app in fact breaks the purpose of 2Fa by storing your passwords don't you get it or what ? did you not read?Aim of 2Fa is to keep it separate from password manager, simple as that. Not looking for simplicity. Rather security.For you being FOSS advocate and 28 years in IT business your response surprises me frankly.