

The authenticated part is important as it protects against tampering of the ciphertext.


Encryption is done via AES256 in GCM mode, which is an authenticated block cypher. Like many password manager products, 1Password extrudes your master password using PBKDF2 with a lot of rounds (nerdy bit: 650,000 rounds of PBKDF2-HMAC-SHA256). However, for me, I wanted something more. Securityīitwarden is a secure product, I don’t doubt that for a second. However, I’ve decided to fully move to 1Password. And, to be honest, I still think Bitwarden is a fantastic product and it isn’t a bad choice if you’re in the password manager market. I originally came to Bitwarden because I was attracted to its simplicity and open-source model. As many will know, I’d been using Bitwarden for quite some time. Some time ago, I shared on LinkedIn that I had decided to tinker with 1Password, so I thought I would drop an update about it. Me liking a product is not an endorsement of how secure it will be for you. Everyone is responsible for their own security.
