Settings

Theme

LastPass says hackers had internal access for four days

bleepingcomputer.com

24 points by olliepop · 7 comments

Reader

1 thread
DevX101

This isn't the first time this company has been breached. I'd stay far away from this company. If you really need a centralized password repo, use 1password.

But if you can, I'd recommend self-hosting (VaultWarden) over any online service provider.

  • suprjami

    I am still amazed anyone would use a proprietary password manager which stores in someone else's computer. That's the opposite of good password management.

    • themadturk

      Which is why LastPass doesn't store your passwords on its servers, just a one-way hash.

      • ix101

        I don't think that's correct. They state that passwords are decrypted in the browser. They are stored encrypted on their servers but not decrypted on their servers AFAIK

      • tinus_hn

        That wouldn’t be very helpful if the point is for the service to remember your passwords.

  • milosmns

    Did you mean BitWarden? Or really VaultWarden?

    • n8henrie

      Based on the context of self-hosting, I assume the parent wrote correctly.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection