By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: This Password Manager Caught Some of Its Own Employees Not Using Its Product
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > This Password Manager Caught Some of Its Own Employees Not Using Its Product
News

This Password Manager Caught Some of Its Own Employees Not Using Its Product

News Room
Last updated: 2025/08/03 at 7:28 AM
News Room Published 3 August 2025
Share
SHARE

Cryptography is hard, but psychology can be harder, which password-manager service Dashlane learned firsthand when it tested a new enterprise security tool on its own workforce.

An in-house test last summer of a feature called Credential Risk Detection revealed that many Dashlane employees had neglected to employ Dashlane to manage certain passwords, and not just those for personal use. 

“Despite every employee actively using Dashlane internally (we deploy it on Day 1 during employee onboarding), we found a significant number of compromised ‘shadow’ credentials—logins used by employees to access various apps, some corporate and others personal,” Dashlane says in a blog post.

A Dashlane admin page showing insecure logins. (Credit: Dashlane)

“In practice, they’re not all doing it the right way,” Dashlane chief technology officer Frederic Rivain said in a Zoom call on Thursday.

This risk-detection feature, part of Dashlane’s Omnix service for businesses, automatically monitors desktop browser activity on company-managed computers for weak passwords and those compromised in data breaches. 

Rivain explained that this software leverages AI to spot login fields and forms in web pages, gauges password complexity in an on-device calculation, and checks for compromises by sending hashes of passwords to the SpyCloud database.

Employers disapproving of employees who don’t use designated password managers is not an IT control-freakery problem. People often reuse passwords–as Dashlane itself reported last fall in a study based on on-device analysis of saved logins–which makes them vulnerable to “credential stuffing” attacks, in which an attacker tries passwords copied from a hacked site on other, high-value logins.

Password managers automatically check for reused passwords in their encrypted vaults of saved logins. And by doing the hard work of generating, remembering and filling in complex passwords, they make it easier for people to use ones that are less vulnerable to cracking. 


The whole goal is behavioral change.

But password-manager users forgetting to use those tools is also not a new problem; many of you reading this may be living it right now. Dashlane went to the trouble of documenting this in-house exercise to make more people (as in, potential corporate customers) aware of it. 

“We don’t see the data from our customers, so I figured we might as well share our own data,” Rivain said. “The whole goal, really, is behavioral change.”


Newsletter Icon

Newsletter Icon

Get Our Best Stories!

Stay Safe With the Latest Security News and Updates


SecurityWatch Newsletter Image

Sign up for our SecurityWatch newsletter for our most important privacy and security stories delivered right to your inbox.

Sign up for our SecurityWatch newsletter for our most important privacy and security stories delivered right to your inbox.

By clicking Sign Me Up, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.

Thanks for signing up!

Your subscription has been confirmed. Keep an eye on your inbox!

Dashlane’s method for making that change happen was sending automated nudges through Slack to alert employees of their oversight and suggest how to fix it. Rivain described that approach as “Showing you what you did wrong on the spot and how to do better.” 

Those nudges proved to be persuasive: “Within seven months, we had virtually eliminated all compromised, weak, and reused credentials from our corporate environment,” the post reports. 

Emphasis on “virtually”; sloppy habits can resurface, and new employees can bring their own.

“Of course it’s never zero, because it starts again,” Rivain commented. 

Recommended by Our Editors

He admitted that he has not bothered to import every old login into his Dashlane account: “I still have a lot of old passwords that I do not use anymore.”

User apathy isn’t the only threat to login security; Rivain observed that AI is making phishing scams increasingly difficult to spot.

“Those emails are becoming way more sophisticated and way more targeted,” he said. “AI allows you to do those at scale and in a much more creative way.”

A password manager won’t autofill a login at the wrong site, but it also won’t stop a user spooked by a phishing scam’s threat of imminent loss of an account from copying and pasting the password from the password manager to the phishing site. 

Passkeys, an authentication upgrade that Dashlane has aggressively supported, defeat phishing attempts entirely because they are cryptographically bound to domain names. But the problem with passkeys is not so much user apathy but site apathy: too many companies still don’t support them. 

And that, Rivain acknowledged, will take more than several months of nudging to fix. “We can see the traction and the basic momentum,” he said. “But it’s going to be a long journey.”

About Rob Pegoraro

Contributor

Rob Pegoraro

Rob Pegoraro writes about interesting problems and possibilities in computers, gadgets, apps, services, telecom, and other things that beep or blink. He’s covered such developments as the evolution of the cell phone from 1G to 5G, the fall and rise of Apple, Google’s growth from obscure Yahoo rival to verb status, and the transformation of social media from CompuServe forums to Facebook’s billions of users. Pegoraro has met most of the founders of the internet and once received a single-word email reply from Steve Jobs.

Read Rob’s full bio

Read the latest from Rob Pegoraro

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Efforts to Ground Physics in Math Are Opening the Secrets of Time
Next Article Best Camera Phone of 2025
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

Lenovo’s rollable laptop is the coolest computer I’ve used all year
News
These Are The Jobs Microsoft Says Will Be Replaced By AI – BGR
News
Apple HFS/HFS+ File-System Drivers See Many Fixes In Linux 6.17
Computing
The uproar over Vogue’s AI-generated ad isn’t just about fashion | News
News

You Might also Like

News

Lenovo’s rollable laptop is the coolest computer I’ve used all year

19 Min Read
News

These Are The Jobs Microsoft Says Will Be Replaced By AI – BGR

3 Min Read
News

The uproar over Vogue’s AI-generated ad isn’t just about fashion | News

16 Min Read
News

I still love VLC, but this lightweight video player changed the game for me

5 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?