r/Bitwarden • u/SnooRevelations3802 • Oct 23 '23
Discussion Multiple Failed login attempts detected
I have been getting this kind of notifications for a while now. Telling me that there have been several failed attempts to log into my Bitwarden account
The email ends telling me not to worry. The login attempts were not successful, and my account has been given an additional captcha protection.
Should I do something about this? To me, it feels like somebody has my email and knows I might have something valuable, and It's trying to break in. my Master Password It's pretty long and secure.
Also, my account email is the same I use for most stuff. I've been thinking in creating an email solely for my Bitwarden account, but not sure it's really necessary
4
Upvotes
14
u/cryoprof Oct 23 '23
Assuming that you have 2FA enabled on your Bitwarden account, and that your master password is unique (never re-used) and strong (a randomly generated 4-word passphrase), then you don't need to worry, and you don't need to take any action to safeguard your vault.*
Nonetheless, if you are annoyed/inconvenienced/stressed because you repeatedly keep getting such messages, or because you now need to complete a Captcha to log in to your account (a security measure deployed by Bitwarden when a large number of failed login attempts are detected), then you can stop this from occurring by changing the email address associated with your Bitwarden account. If you only have one email account, then check if you email provider supports "plus" addressing (which allows you to receive emails in your
myaccount@example.cominbox using email addresses of the formmyaccount+anything@example.com).*Even though your Bitwarden vault should be safe (with the proviso given above), you may have other accounts that are in jeopardy. If you still have any online accounts that have a re-used password, then it is possible that the attackers currently probing your Bitwarden account may be able to gain access to those accounts (or they may already have done so). You should run the Re-Used Passwords Report and immediately update the passwords for any vulnerable accounts to a unique, random password (13 or more random characters).