{"id":58973,"date":"2022-12-22T17:43:39","date_gmt":"2022-12-22T22:43:39","guid":{"rendered":"http:\/\/pappp.net\/?guid=3514f9eccc78ab4c0b11b572dec7a1ec"},"modified":"2022-12-22T17:43:39","modified_gmt":"2022-12-22T22:43:39","slug":"lastpass-users-your-info-and-password-vault-data-are-now-in-hackers-hands","status":"publish","type":"post","link":"https:\/\/pappp.net\/?p=58973","title":{"rendered":"LastPass users: Your info and password vault data are now in hackers\u2019 hands"},"content":{"rendered":"<p class=\"syndicated-attribution\">Source: <a href=\"https:\/\/arstechnica.com\/?p=1906575\">Ars Technica<\/a><\/p>\n<div style=\"background-color : #fff7d5;\n\t\t\tborder-width : 1px; padding : 5px; border-style : dashed; border-color : #e7d796;margin-bottom : 1em; color : #9a8c59;\">Article note: Putting lots of sensitive user data in internet-connected silos is never a good idea.\nFor passwords, use KeePass or something where you have a proper locally-encrypted DB, and sync that through a normal file-syncing tool (Seafile, Syncthing, Dropbox...whatever).<\/div><div>\n<figure><img src=\"https:\/\/cdn.arstechnica.net\/wp-content\/uploads\/2022\/12\/password-change-800x534.jpg\" alt=\"Calendar with words Time to change password. Password management.\" referrerpolicy=\"no-referrer\" loading=\"lazy\"\/><p><a href=\"https:\/\/cdn.arstechnica.net\/wp-content\/uploads\/2022\/12\/password-change.jpg\" rel=\"noopener noreferrer\">Enlarge<\/a> (credit: Getty Images)<\/p>  <\/figure><div><a name=\"page-1\"><\/a><\/div>\n<p>LastPass, one of the leading password managers, said that hackers obtained a wealth of personal information belonging to its customers as well as encrypted and cryptographically hashed passwords and other data stored in customer vaults.<\/p>\n<p>The revelation, <a href=\"https:\/\/blog.lastpass.com\/2022\/12\/notice-of-recent-security-incident\/\" rel=\"noopener noreferrer\">posted<\/a> on Thursday, represents a dramatic update to a breach LastPass <a href=\"https:\/\/arstechnica.com\/information-technology\/2022\/08\/the-number-of-companies-caught-up-in-the-twilio-hack-keeps-growing\/\" rel=\"noopener noreferrer\">disclosed in August<\/a>. At the time, the company said that a threat actor gained unauthorized access through a single compromised developer account to portions of the password manager's development environment and \"took portions of source code and some proprietary LastPass technical information.\" The company said at the time that customers&rsquo; master passwords, encrypted passwords, personal information, and other data stored in customer accounts weren't affected.<\/p>\n<h2>Sensitive data, both encrypted and not, copied<\/h2>\n<p>In Thursday&rsquo;s update, the company said hackers accessed personal information and related metadata, including company names, end-user names, billing addresses, email addresses, telephone numbers, and IP addresses customers used to access LastPass services. The hackers also copied a backup of customer vault data that included unencrypted data such as website URLs and encrypted data fields such as website usernames and passwords, secure notes, and form-filled data.<\/p><\/div><p><a href=\"https:\/\/arstechnica.com\/?p=1906575#p3\" rel=\"noopener noreferrer\">Read 10 remaining paragraphs<\/a> | <a href=\"https:\/\/arstechnica.com\/?p=1906575&amp;comments=1\" rel=\"noopener noreferrer\">Comments<\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>Enlarge (credit: Getty Images)  <\/p>\n<p>LastPass, one of the leading password managers, s&#8230;<\/p>\n<p> <a href=\"https:\/\/pappp.net\/?p=58973\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[226],"tags":[],"class_list":["post-58973","post","type-post","status-publish","format-standard","hentry","category-news-2"],"_links":{"self":[{"href":"https:\/\/pappp.net\/index.php?rest_route=\/wp\/v2\/posts\/58973","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/pappp.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/pappp.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/pappp.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/pappp.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=58973"}],"version-history":[{"count":0,"href":"https:\/\/pappp.net\/index.php?rest_route=\/wp\/v2\/posts\/58973\/revisions"}],"wp:attachment":[{"href":"https:\/\/pappp.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=58973"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/pappp.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=58973"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/pappp.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=58973"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}