Sat 27 August 2022:
More than 33 million people use the password manager LastPass worldwide, and it recently came under attack by a hacker who stole source code and private data.
The company believes that no passwords were taken as part of the breach, and users shouldn’t need to take any additional steps to secure their accounts, according to a blog post published on Thursday.
A “unauthorised party” had access to its developer environment, which is the software used by employees to develop and maintain the LastPass product, according to an investigation. According to the company, the perpetrators used a single compromised developer’s account to gain access to the system.
As per Bloomberg, the organisation that was attacked is one that automatically creates and maintains complex passwords for a variety of user accounts, including Netflix and Gmail, so that customers don’t have to manually enter their login information. On its website, LastPass cites Patagonia, Yelp Inc., and State Farm as clients.
According to the cybersecurity blog Bleeping Computer, it questioned LastPass two weeks ago about the hack. The “speedy notification” from LastPass impressed Allan Liska, an expert with cybersecurity firm Recorded Future’s Computer Security Incident Response Team.
“While two weeks might seem like a long time to some, it can take a while for incident response teams to fully assess and report on a situation,” he said. “it will take time to fully determine the extent of any damage that may have been as result of the breach. However, for now it appears to not be client-impacting.”
On social media, there was concern that hackers might be able to obtain passwords to password vaults after stealing confidential information and source code. . “It is unlikely that the stolen source code will give the criminals access to customer passwords,” according to Liska.
SOURCE: INDEPENDENT PRESS AND NEWS AGENCIES
___________________________________________________________________________________________________________________________________________
FOLLOW INDEPENDENT PRESS:
TWITTER (CLICK HERE)
https://twitter.com/IpIndependent
FACEBOOK (CLICK HERE)
https://web.facebook.com/ipindependent
Think your friends would be interested? Share this story!