LastPass - The crooks used a keylogger to crack a corporatre password vault


Despite the lack of a publication date on the update, it appears that LastPass just [2023-02-27] released a brief report titled Incident 2 - Further details of the attack. You may recall that LastPass experienced a lateral movement attack in December 2022, as the awful news was announced shortly before the Christmas holiday season.

A sophisticated way of expressing, “Once you get into the lobby, you can sneak into a dark corner of the security office, where you can wait in the shadows until the guards get up to make tea, when you can grab an access card from the shelf next to where they usually sit,” is what lateral movement means.

Read More…