• Latest
  • Trending
Lastpass Data Breach Frightens Users, Some Say Hack ‘May Be Worse Than They Are Letting on’ – Security Bitcoin News

Lastpass Data Breach Frightens Users, Some Say Hack ‘May Be Worse Than They Are Letting on’ – Security Bitcoin News

December 24, 2022
XRP Price Analysis for January 28

XRP Price Analysis for January 28

January 29, 2023
Cardano’s weekly update looks bullish, but will it give relief to short-term holders

Cardano’s weekly update looks bullish, but will it give relief to short-term holders

January 29, 2023
Why is crypto pumping? Watch The Market Report live

Why is crypto pumping? Watch The Market Report live

January 29, 2023
White House Publishes ‘Roadmap’ to Mitigate Cryptocurrency Risks – Regulation Bitcoin News

White House Publishes ‘Roadmap’ to Mitigate Cryptocurrency Risks – Regulation Bitcoin News

January 29, 2023
Mythical Games acquires DMarket: A New Era of Blockchain Gaming Begins

Mythical Games acquires DMarket: A New Era of Blockchain Gaming Begins

January 29, 2023
New York Considers Bill to Establish Cryptocurrency as a Form of Payment for State Agencies – Regulation Bitcoin News

New York Considers Bill to Establish Cryptocurrency as a Form of Payment for State Agencies – Regulation Bitcoin News

January 29, 2023
Dogecoin Community Stunned by McDonald’s Refusal to Go Viral With DOGE

Dogecoin Community Stunned by McDonald’s Refusal to Go Viral With DOGE

January 29, 2023
Anticipation for Ethereum [ETH] 2.0 rises as metric reaches all-time high

Anticipation for Ethereum [ETH] 2.0 rises as metric reaches all-time high

January 29, 2023
LTC/USD slides downward, reaching the $88.02 level – Cryptopolitan

LTC/USD slides downward, reaching the $88.02 level – Cryptopolitan

January 28, 2023
What is an ascending triangle pattern and how to trade it?

What is an ascending triangle pattern and how to trade it?

January 28, 2023
FTX creditors list, BlockFi $1.2B exposure and new Celsius token…

FTX creditors list, BlockFi $1.2B exposure and new Celsius token…

January 28, 2023
XRP (XRP), Low Volatility but Falling Saturday: Is it Time to Cash Out? – InvestorsObserver

XRP (XRP), Low Volatility but Falling Saturday: Is it Time to Cash Out? – InvestorsObserver

January 28, 2023
Sunday, January 29, 2023
Retail
  • Home
  • Bitcoin
  • Cryptocurrency
  • Ethereum
  • Blockchain
  • Altcoin
  • ADA
  • Dogecoin
  • Litecoin
  • XRP
  • Regulation
  • Market And Analysis
No Result
View All Result
The Crypto Days
No Result
View All Result

Lastpass Data Breach Frightens Users, Some Say Hack ‘May Be Worse Than They Are Letting on’ – Security Bitcoin News

by marcell.major
December 24, 2022
in Bitcoin
0

YOU MAY ALSO LIKE

White House Publishes ‘Roadmap’ to Mitigate Cryptocurrency Risks – Regulation Bitcoin News

JPMorgan CEO Jamie Dimon Says Bitcoin is a “hyped-up fraud”


People involved in financial tech, software programming, cyber security, and cryptocurrencies have been talking about the Lastpass data breach that was disclosed two days ago. The password management company detailed that a breach, committed earlier this year, allowed hackers to obtain a “backup of customer vault data.”

Lastpass Reveals ‘Threat Actor Was Also Able to Copy a Backup of Customer Vault Data’

On Dec. 22, 2022, the password management firm Lastpass disclosed that an “unknown threat actor” managed to breach the firm’s cloud-based storage environment in or around Aug. 2022. As soon as the news was published, the Lastpass data leak has been a topical discussion on social media and forums. A great number of people believe that Lastpass’ situation “may be worse than they are letting on.”

LastPass attackers now know all websites you have passwords stored for and the blobs, encrypted only by your master password https://t.co/Wdbt6mWe8C https://t.co/HldcJ8DYkK

— SwiftOnSecurity (@SwiftOnSecurity) December 22, 2022

“Based on our investigation to date, we have learned that an unknown threat actor accessed a cloud-based storage environment leveraging information obtained from the incident we previously disclosed in August of 2022,” Lastpass disclosed. The password management company added:

The threat actor was also able to copy a backup of customer vault data from the encrypted storage container which is stored in a proprietary binary format that contains both unencrypted data, such as website URLs, as well as fully-encrypted sensitive fields such as website usernames and passwords, secure notes, and form-filled data.

Lastpass insists the encrypted fields are secure with 256-bit AES encryption and the info can only be decrypted by leveraging each user’s master password using the firm’s zero-knowledge architecture. “As a reminder, the master password is never known to Lastpass and is not stored or maintained by Lastpass,” the company detailed.

lastpass gets hacked and immediately after a ton of crypto wallets are broken into and drained

“be your own bank”

nah go break into a brick & mortar establishment if you want my funds nerds, good luck

— gainzy (@gainzy222) December 24, 2022

Lastpass’ Security Reassurance Doesn’t Seem to Convince a Number of Critics

However, a number of reports believe that the situation is worse than Lastpass is letting on. Reviewgeek.com’s Andrew Heinzman stresses in his report to “please, stop using Lastpass.” “Even if you use a strong master password, there’s a chance that hackers will try to phish some information out of you,” Heinzman wrote. The author added:

To be clear, Lastpass is still investigating this data breach. And after four months of ‘sorry, it’s worse than we thought,’ customers are rightfully worried that Lastpass doesn’t have all the details. For all we know, things could get even worse. We asked our readers to stop using Lastpass in July 2020.

Crypto supporter Udi Wertheimer also warned people that if they use Lastpass “attackers probably have a copy of your vault.” Wertheimer’s recommendation is the same as Heinzman’s as the digital currency proponent insisted that users should “stop using Lastpass.”

“We don’t know how bad things are,” Wertheimer added. “It’s possible that attackers have ongoing access, so don’t just change your passwords and put them back into Lastpass.” Moreover, a Twitter user who claims to have worked as an engineer for the company seven years ago also noted that Lastpass’ breach situation is a big deal.

“I worked at Lastpass as an engineer a long time ago. 7+ years ago. My 2 cents on the situation,” the individual said. “This is the worst breach Lastpass has had. By a lot. The key difference is that customer vaults were accessed this time, which are kept in a completely separate database.”

Tags in this story
256-bit AES encryption, Andrew Heinzman, Crypto, Digital Assets, encrypted fields, former engineer, Lastpass, Lastpass data breach, password management firm, Passwords, Reviewgeek.com, secret passwords, Security, Seeds, Udi Wertheimer, zero-knowledge architecture

What do you think about the Lastpass data breach and the speculation that it is worse than Lastpass is letting on? Let us know what you think about this subject in the comments section below.

Jamie Redman

Jamie Redman is the News Lead at Bitcoin.com News and a financial tech journalist living in Florida. Redman has been an active member of the cryptocurrency community since 2011. He has a passion for Bitcoin, open-source code, and decentralized applications. Since September 2015, Redman has written more than 6,000 articles for Bitcoin.com News about the disruptive protocols emerging today.




Image Credits: Shutterstock, Pixabay, Wiki Commons

Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article.

More Popular News

In Case You Missed It





Source link

Tags: BitcoinBreachdataFrightenshackLastPasslettingNewssecurityusersWorse
ShareTweetPin

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result

Recent News

XRP Price Analysis for January 28

XRP Price Analysis for January 28

January 29, 2023
Cardano’s weekly update looks bullish, but will it give relief to short-term holders

Cardano’s weekly update looks bullish, but will it give relief to short-term holders

January 29, 2023
Why is crypto pumping? Watch The Market Report live

Why is crypto pumping? Watch The Market Report live

January 29, 2023

Recent News

XRP Price Analysis for January 28

XRP Price Analysis for January 28

January 29, 2023
Cardano’s weekly update looks bullish, but will it give relief to short-term holders

Cardano’s weekly update looks bullish, but will it give relief to short-term holders

January 29, 2023
Why is crypto pumping? Watch The Market Report live

Why is crypto pumping? Watch The Market Report live

January 29, 2023

Categories

  • ADA
  • Altcoin
  • Bitcoin
  • Blockchain
  • Cryptocurrency
  • Dogecoin
  • Ethereum
  • Litecoin
  • Market And Analysis
  • Regulation
  • XRP

Follow Us

Find Via Tags

Ada Altcoin Altcoins analysis Analyst BIG Binance Bitcoin blockchain BNB BTC Buy Cardano coin Cointelegraph crypto Cryptocurrency DOGE Dogecoin ETH Ethereum eyes FTX Heres Inu Investors Latest Litecoin LTC Market News Price rally Report Ripple SEC Shiba SOL Solana today Token Top trading week XRP

© 2021 The Crypto Days

No Result
View All Result
  • Home
  • Bitcoin
  • Cryptocurrency
  • Ethereum
  • Blockchain
  • Altcoin
  • ADA
  • Dogecoin
  • Litecoin
  • XRP
  • Regulation
  • Market And Analysis

© 2021 The Crypto Days