Skip to main content

Notification: Security Incident at LastPass


dips
Forum|alt.badge.img+7
  • Veeam Legend
  • 808 comments

LastPass have just announced a Security incident on their platform limited to their Development environment with apparently no compromise to user vaults.

More here: https://blog.lastpass.com/2022/08/notice-of-recent-security-incident/

11 comments

Chris.Childerhose
Forum|alt.badge.img+21
  • Veeam Legend, Veeam Vanguard
  • 8495 comments
  • August 25, 2022

Yikes.  Still have a subscription with them but may cancel as I use Dashlane.


marcofabbri
Forum|alt.badge.img+13
  • On the path to Greatness
  • 990 comments
  • August 25, 2022

If I remember correctly it's second time that happens for LastPass...


HunterLAFR
Forum|alt.badge.img+8
  • Veeam Legend
  • 422 comments
  • August 25, 2022

Im trying passbolt onprem in my home lab.

https://www.passbolt.com

 


Chris.Childerhose
Forum|alt.badge.img+21
  • Veeam Legend, Veeam Vanguard
  • 8495 comments
  • August 25, 2022
HunterLAFR wrote:

Im trying passbolt onprem in my home lab.

https://www.passbolt.com

 

It is actually very good we use that at work. 


marcofabbri
Forum|alt.badge.img+13
  • On the path to Greatness
  • 990 comments
  • August 26, 2022
HunterLAFR wrote:

Im trying passbolt onprem in my home lab.

https://www.passbolt.com

 

Never heard about it, I’ll give a try but when we’re talking about password manager I prefer expensive paid solutions (and LastPass got a free subscription...). To have better security (sync password manager talking) must pay.


marcofabbri
Forum|alt.badge.img+13
  • On the path to Greatness
  • 990 comments
  • August 26, 2022

MicoolPaul
Forum|alt.badge.img+23
  • 2361 comments
  • August 26, 2022

Twice in under a year 😬

 

Also, unrelated to password managers but heavily utilised within the tech communities, Plex have had some unauthorised data access too!

 

https://forums.plex.tv/t/important-notice-of-a-potential-data-breach-24th-of-august-2022/806518


marcofabbri
Forum|alt.badge.img+13
  • On the path to Greatness
  • 990 comments
  • August 26, 2022

I deleted my unused account just yesterday, after that email. Not good at all.


regnor
Forum|alt.badge.img+14
  • Veeam MVP
  • 1352 comments
  • August 26, 2022

@marcofabbri I didn't know about the one in 2021. But then it's actually their 3th incident. They've had a breach/hack in 2015...🙄

Too many incidents in my opinion for such a critical tool.


Stabz
Forum|alt.badge.img+8
  • On the path to Greatness
  • 355 comments
  • December 23, 2022

Hey,
Password manager  LastPass has confirmed that cybercriminals stole its customers’ encrypted password vaults, which store its customers’ passwords and other secrets.

In an updated blogpost on its disclosure, LastPass CEO Karim Toubba said the intruders took a copy of a backup of customer vault data by using cloud storage keys stolen from a LastPass employee.

https://blog.lastpass.com/2022/12/notice-of-recent-security-incident/

 

how to lose the trust of these customers :(


Chris.Childerhose
Forum|alt.badge.img+21
  • Veeam Legend, Veeam Vanguard
  • 8495 comments
  • December 23, 2022
Stabz wrote:

Hey,
Password manager  LastPass has confirmed that cybercriminals stole its customers’ encrypted password vaults, which store its customers’ passwords and other secrets.

In an updated blogpost on its disclosure, LastPass CEO Karim Toubba said the intruders took a copy of a backup of customer vault data by using cloud storage keys stolen from a LastPass employee.

https://blog.lastpass.com/2022/12/notice-of-recent-security-incident/

 

how to lose the trust of these customers :(

Wow. I did use them at one point but may not again now due to this.


Comment