Phishing Alert: Fake ‘LastPass Hack’ Emails Spreading Malware
https://gbhackers.com/fake-lastpass-hack/
#Infosec #Security #Cybersecurity #CeptBiro #PhishingAlert #Fake #LastPassHack #EmailsSpreadingMalware
Phishing Alert: Fake ‘LastPass Hack’ Emails Spreading Malware
https://gbhackers.com/fake-lastpass-hack/
#Infosec #Security #Cybersecurity #CeptBiro #PhishingAlert #Fake #LastPassHack #EmailsSpreadingMalware
check this out, #lastpass wants me to renew my subscription,
haha I think I can give the Internet a list of all my passwords for free if I want to, don't need you to charge me for it,
lastpass? more like a hard pass thank you very much
you had one job fool
Sequência com informação essencial sobre #LastPassHack #LastPass (em inglês)
@BleepingComputer https://infosec.exchange/@BleepingComputer/109948929028067133
LastPass has released a "public" advisory and investigation results for two security incidents that occurred in 2022: ✴️Incident #1: Occurred in August and disclosed in August/September. ✴️Incident #2: Occurred in August through October 26th, 2022. https://blog.lastpass.com/2023/03/security-incident-update-recommended-actions/
Will this be the end of #Lastpass? Is anyone still using it? I was actually one of those hardcore fans that paid when they changed the pricing-tiers, but due to it being closed source and me still seeing ads showing that I was tracked, I realised it was them so a switched to #BitWarden. Since then, all #ads are irrelevant to me.
#tech #infosec #security #hacking #hack #Lastpass #LastpassHack #Bitwarden #PasswordManager
http://www.techmeme.com/230227/p30#a230227p30
It was through their home computer and a keylogger due to a known remote code execution exploit.
Again, very weird how they knew to target this person and where. These guys were watched.
"As only four LastPass DevOps engineers had access to these decryption keys, the threat actor targeted one of the engineers. Ultimately, the hackers successfully installed a keylogger on the employee's device by exploiting a remote code execution vulnerability in a third-party media software package."
It's crazy how they knew to target these 4 individuals. I would love to know how they figured it out. Both this and the #GoDaddy hacks were very intricate