facebook
lastfm
linkedin
tumblr
pinterest
1800-2234-5367 [email protected]
BREAKING NEWS
HBO renews ‘The Last of Us’ for a second season
‘Stranger Things’ helped Netflix dominate the streaming charts in 2022
Amazon Fresh will soon require a minimum order of over $150 for free delivery
Mac mini review (M2 Pro, 2023): Just call it a Mac mini Pro
Apple could limit WiFi 6E availability to iPhone 15 Pro models
Federal prosecutors ask court to bar Sam Bankman-Fried from using Signal
US, Netherlands and Japan reportedly agree to limit China’s access to chipmaking equipment
Ford recalls 462,000 SUVs over rearview camera issue
Like users, app developers are fleeing Twitter for Mastodon
CWA files unfair labor practice charge against eBay’s trading card subsidiary

The Lastpass hack was worse than the company first reported

Posted On 23 Dec 2022
By : Murtaza
Comment: Off



After being hacked for the second time in as many years this August, password manager app Lastpass announced on Thursday the most recent intrusion was much more damaging than initially reported with the attackers having made off with users’ password vaults in some cases. That means the thieves have people’s entire collections of encrypted personal data, if not the immediate method to unlock them.
“No customer data was accessed during the August 2022 incident,” LastPass CEO Karim Toubba, explained. However, some of the app’s source code was lifted and then used to spearphish a Lastpass employee into giving up their access credentials, then used those keys to decrypt and copy off, “some storage volumes within the cloud-based storage service.”
Among the encrypted data obtained by the hackers included basic customer account information like company names, billing, email and IP addresses; and telephone numbers, Toubba continued. “These encrypted fields remain secured with 256-bit AES encryption and can only be decrypted with a unique encryption key derived from each user’s master password using our Zero Knowledge architecture,” Toubba said. “As a reminder, the master password is never known to LastPass and is not stored or maintained by LastPass.” 
Still, you’re going to take the company’s word for it? I’m not. It’ll be a pain but swapping out all of your various existing site passwords for new ones — as well as picking a new master password — might ultimately prove necessary to regain your online security. Or you could just tell Lastpass to go kick rocks and switch over to 1Password or Bitwarden.All products recommended by Engadget are selected by our editorial team, independent of our parent company. Some of our stories include affiliate links. If you buy something through one of these links, we may earn an affiliate commission. All prices are correct at the time of publishing.



Source link

About the Author
  • google-share
Previous Story

Tesla thinks I will drop $300 on this wireless phone charger

Next Story

Google is making its internal video-blurring privacy tool open source

  • HBO renews ‘The Last of Us’ for a second season
  • ‘Stranger Things’ helped Netflix dominate the streaming charts in 2022
  • Amazon Fresh will soon require a minimum order of over $150 for free delivery
  • Mac mini review (M2 Pro, 2023): Just call it a Mac mini Pro
  • Apple could limit WiFi 6E availability to iPhone 15 Pro models
  • HBO renews ‘The Last of Us’ for a second season
  • ‘Stranger Things’ helped Netflix dominate the streaming charts in 2022
  • Amazon Fresh will soon require a minimum order of over $150 for free delivery
  • Mac mini review (M2 Pro, 2023): Just call it a Mac mini Pro
  • Apple could limit WiFi 6E availability to iPhone 15 Pro models

Categories

  • Laptops
  • Mobile
  • TechNews
  • Uncategorized

Recent Posts

  • HBO renews ‘The Last of Us’ for a second season
  • ‘Stranger Things’ helped Netflix dominate the streaming charts in 2022
  • Amazon Fresh will soon require a minimum order of over $150 for free delivery
  • Mac mini review (M2 Pro, 2023): Just call it a Mac mini Pro
  • Apple could limit WiFi 6E availability to iPhone 15 Pro models
Copyright 2022 Muft.com Inc. All Right Reserved. Powered by Aekpani Networks.
Go to mobile version