Skip to main content

Notification: Security Incident at LastPass


dips
Forum|alt.badge.img+7
  • Veeam Legend
  • 809 comments

LastPass have just announced a Security incident on their platform limited to their Development environment with apparently no compromise to user vaults.

More here: https://blog.lastpass.com/2022/08/notice-of-recent-security-incident/

Chris.Childerhose
Forum|alt.badge.img+21

Yikes.  Still have a subscription with them but may cancel as I use Dashlane.


marcofabbri
Forum|alt.badge.img+13
  • On the path to Greatness
  • August 25, 2022

If I remember correctly it's second time that happens for LastPass...


HunterLAFR
Forum|alt.badge.img+8
  • Veeam Legend
  • August 25, 2022

Im trying passbolt onprem in my home lab.

https://www.passbolt.com

 


Chris.Childerhose
Forum|alt.badge.img+21
HunterLAFR wrote:

Im trying passbolt onprem in my home lab.

https://www.passbolt.com

 

It is actually very good we use that at work. 


marcofabbri
Forum|alt.badge.img+13
  • On the path to Greatness
  • August 26, 2022
HunterLAFR wrote:

Im trying passbolt onprem in my home lab.

https://www.passbolt.com

 

Never heard about it, I’ll give a try but when we’re talking about password manager I prefer expensive paid solutions (and LastPass got a free subscription...). To have better security (sync password manager talking) must pay.


marcofabbri
Forum|alt.badge.img+13
  • On the path to Greatness
  • August 26, 2022

MicoolPaul
Forum|alt.badge.img+23

Twice in under a year 😬

 

Also, unrelated to password managers but heavily utilised within the tech communities, Plex have had some unauthorised data access too!

 

https://forums.plex.tv/t/important-notice-of-a-potential-data-breach-24th-of-august-2022/806518


marcofabbri
Forum|alt.badge.img+13
  • On the path to Greatness
  • August 26, 2022

I deleted my unused account just yesterday, after that email. Not good at all.


regnor
Forum|alt.badge.img+14
  • Veeam MVP
  • August 26, 2022

@marcofabbri I didn't know about the one in 2021. But then it's actually their 3th incident. They've had a breach/hack in 2015...🙄

Too many incidents in my opinion for such a critical tool.


Stabz
Forum|alt.badge.img+8
  • On the path to Greatness
  • December 23, 2022

Hey,
Password manager  LastPass has confirmed that cybercriminals stole its customers’ encrypted password vaults, which store its customers’ passwords and other secrets.

In an updated blogpost on its disclosure, LastPass CEO Karim Toubba said the intruders took a copy of a backup of customer vault data by using cloud storage keys stolen from a LastPass employee.

https://blog.lastpass.com/2022/12/notice-of-recent-security-incident/

 

how to lose the trust of these customers :(


Chris.Childerhose
Forum|alt.badge.img+21
Stabz wrote:

Hey,
Password manager  LastPass has confirmed that cybercriminals stole its customers’ encrypted password vaults, which store its customers’ passwords and other secrets.

In an updated blogpost on its disclosure, LastPass CEO Karim Toubba said the intruders took a copy of a backup of customer vault data by using cloud storage keys stolen from a LastPass employee.

https://blog.lastpass.com/2022/12/notice-of-recent-security-incident/

 

how to lose the trust of these customers :(

Wow. I did use them at one point but may not again now due to this.


Comment