What We Know
CoolingJust now

LastPass notifies users of yet another data breach - Hacker News

  • 8 sources analyzed
  • Source mix: Web
  • Momentum: Cooling

What We Know

LastPass has notified users that it was impacted by a supply‑chain attack tied to Klue, a third‑party vendor. Attackers gained access to Klue-related resources and used that access to steal support cases from LastPass’ Salesforce environment, according to reporting from multiple outlets. LastPass confirmed the incident and notified affected customers.

Security reporting identifies the exposed data as support‑case records that included customer names and contact information. UpGuard’s timeline in the reporting indicates the incident was discovered on June 12 and reported on June 22. Other cybersecurity vendors that used Klue’s services—such as BeyondTrust—were similarly flagged in coverage as affected by the Klue‑Salesforce compromise. The disclosure has drawn scrutiny and skepticism from users about LastPass’ ability to protect customer data.

Source Comparison

Aligned reporting
6 corroborates - 1 adds context - 0 conflicts