Originally Posted by
dayone
"To test these companies’ phishing resistance, the researchers created a false Google app, which was able to trick both 1Password and LastPass into revealing a password. They also discovered that Keeper, Dashlane, and 1Password don’t limit the number of login attempts while entering the master password, making it easier for hackers to perform brute-force attacks."
As a 1Password customer, I would be interested in reading that study. Do you have a link? My Google searches only found this:
As for brute-force attacks on the master password, I don’t think lack of limits are really a problem:
https://support.1password.com/pbkdf2/