A pentest report made me change how I handle client passwords
Last month a guy auditing our small shop's network flagged that I was storing client Wi-Fi passwords in a plain text file on my laptop. He said if my machine got hit with ransomware, all that info would be exposed. I moved everything into Bitwarden and set up 2FA, took about 2 hours for 40 plus clients. Has anyone else had a similar wake-up call from an outside review?