ramimac / aws-customer-security-incidents

A repository of breaches of AWS customers
GNU General Public License v3.0
701 stars 39 forks source link

GoTo / LastPass #41

Closed ramimac closed 1 year ago

ramimac commented 1 year ago

https://blog.lastpass.com/2022/11/notice-of-recent-security-incident/

We recently detected unusual activity within a third-party cloud storage service, which is currently shared by both LastPass and its affiliate, GoTo. We immediately launched an investigation, engaged Mandiant, a leading security firm, and alerted law enforcement.

We have determined that an unauthorized party, using information obtained in the August 2022 incident, was able to gain access to certain elements of our customers’ information. Our customers’ passwords remain safely encrypted due to LastPass’s Zero Knowledge architecture.

https://www.goto.com/-/media/PDFs/trust - resource center/LastPass-Subprocessor-list-pdf

ramimac commented 1 year ago

https://support.lastpass.com/help/incident-2-additional-details-of-the-attack