OZ Verified Business
Australia's No.1 Computer Support Company
The Original PC Doctor - Carbon Neutral
   
Need Technical Support? 1300 723 628 Call Service is open 24 Hours/ 7 Days a Week
 

Lastpass Says Hackers Accessed Customer Data In New Breach

Lastpass Says Hackers Accessed Customer Data In New Breach

Data breaches occur on a regular basis and often lead to data leakage. The data leaked can then be used by criminals in order to perform certain actions, such as accessing corporate accounts or extracting user details. In recent news, LastPass has announced that their cloud servers have been attacked and a breach occurred. This means attackers might have accessed user accounts. We look closely at the breach and what you should do in this post.

What Is LastPass?

LastPass is a password management platform that focuses on making it easier for users to sign into their accounts. The platform is available as both personal and corporate versions, and is used by a significant number of individuals. The corporate side of LastPass frequently performed research in order to offer companies the ability to identify potential threats internally. For example, the recent annual report from LastPass states that employees use the same password for corporate accounts about 13 times. Only slightly more than 50% of companies are utilising multi-factor authentication.

 

Security Breach At LastPass

On the 30th of November, 2022, LastPass posted an official notification on their Twitter profile stating that unusual activity had been detected on their cloud storage service. The cloud storage service affected was a third-party one that they shared with GoTo, an affiliate of LastPass.

This was not the first or only security breach that LastPass experienced in 2022. Just three months prior to this particular incident, the company also announced a breach in their development environment. In August, a developer account was compromised, which gave hackers access to the backend development area of LastPass. The goal of the attack was to steal the source code that was used for the development of the application.

The latest attack did not target the development environment but rather the cloud storage system that the company uses to store data securely.

While the breach did occur, LastPass notified users and customers that no passwords or user data were leaked during the breach. This is due to the fact that LastPass uses the Zero Knowledge architecture in encrypting the data that users store. This type of technology is tough to crack, which keeps passwords stored on user accounts secure during a data breach.

Even though user passwords were not leaked during the breach, customers are concerned with two breaches announced in just three months.

 

Keeping Your Data Protected

As breaches occur in companies we trust to keep our data safe, it is important to learn what the average consumer or business owner can do. Keeping your data safe is crucial. There are a couple of steps that you can use to add extra protection to the LastPass account that you use. These practices should not only apply to your LastPass account, but also to other profiles that you have.

The password you use is one of the most important factors. Research shows that emotions, pet names, partner names, food, and colours represent some of the most commonly hacked password types. It is important to move away from common phrases that people often use when setting up a password – as hackers can often break through the security line with these types of passwords. Some apps, including password managers, offer a way to generate a more secure password.

This type of password will usually consist of numbers, letters, and symbols. The combination of these three with no obvious words in the password helps to enhance its overall efficacy. Hackers have a harder time decoding a password that uses this combination.

Activating multi-factor authentication is also another important step that people need to take. Two-step authentication will allow you to enter your username and password to sign into your account, but it requires an additional step before you can access your profile. This step may include a code sent to your email address or perhaps opening a notification on your phone to approve access to the profile.

The combination of these two elements can help to make it harder for hackers to crack should they breach a network like LastPass’s cloud servers. In these events, you have a double layer of protection that protects your stored content in your account against data breaches and hackers.

 

Conclusion

A new breach was detected in the cloud storage service that LastPass uses to store customer passwords. The breach did not result in the exposure of user data but is still a concern for individuals who use the application. Businesses need to ensure their data is kept secure to avoid breaches and compromises. Strong passwords can help reduce the risk of data leaks and encryption technology that uses secrets and tokens.

 

References

Written by The Original PC Doctor on 14/1/2023.

Embark on a journey of connection and joy! Share this page with your loved ones on your favourite digital platform. Click one of the icons below and let the magic of sharing begin!

Join the conversation — your thoughts matter!

Your email address will not be published. Required fields are marked *

*

Want a Quick Quote?

Facing tech troubles? Submit your details below and receive a free, no-obligation quote from one of our helpful helpdesk staff within 30 minutes!

    Sign me up for the weekly newsletter

    We will never share your information with anyone.
    Privacy Policy.

    Customer Reviews
    The Original PC Doctor
    Average Rating: 4.5 out of 5
    *Based on 13941394 customer reviews collected via multiple sources (Word of Mouth, Product Reviews, Google Reviews and our feedback system.
    100+ Customer Reviews Milestone Badget - Word of Mouth
    The Original PC Doctor - 23 years of business excellence