🚨Hackers Steal Passwords From 20 Customer Vaults
Your password manager just got hacked
TL;DR
In a weekend cyberattack, hackers obtained at least 12 encrypted vaults from a password manager company, compromising about 20 customer accounts. Two-factor authentication was brute-forced, and no evidence of system compromise by the attackers.
Hackers gained access to at least 12 encrypted vaults used for storing customer passwords during a weekend cyberattack on a password manager service. About 20 customer accounts were affected when two-factor authentication was brute-forced, allowing hackers to download copies of certain customers' encrypted vaults. The company has notified the impacted users and taken steps to mitigate future incidents. This breach highlights the importance of strong master passwords for protecting sensitive credentials against brute-force attacks.

Key Points
At least 12 encrypted vaults storing customer passwords were compromised during the attack.
About 20 customer accounts had their two-factor authentication brute-forced by attackers.
The company has taken steps to mitigate future incidents but has not disclosed specifics.
Customers with weaker password requirements are at greater risk of having their master passwords guessed and vaults decrypted.
In a similar incident in 2022, another password manager confirmed customer backups were stolen.
Why It Matters
If you're using this compromised service, your encrypted vault may have been accessed. Customers with weaker master passwords are especially at risk. Reset all credentials immediately and consider stronger security measures.
Comments
Be the first to comment
Enjoyed this article?
Get it daily. 7am. Free. Reads in 5 minutes.
Join 3,484 builders reading daily.