Insider Risk: The Good, the Bad, the Indifferent

One of the key areas within the insider risk matrix is the role of the benevolent or malevolent employee. With the former, their actions are of good intent, though their execution and ...
The LastPass Attack Gets Worse, What is Gamification, Signal's Encryption Standoff

The LastPass Attack Gets Worse, What is Gamification, Signal’s Encryption Standoff

Popular password manager LastPass suffered a second attack that lasted for over two months. Now new and disturbing information is being released about the attack. Scott discusses the benefits and challenges of ...
phishing Telegram

LastPass Devs Were Phished for Credentials

LastPass has followed news of last month’s breach with details on a second attack in which developers were phished for their credentials. In the January incident, the password manager’s parent, GoTo, said ...
Security Boulevard
email, secure, LastPass WithSecure language Expel BEC Delivering Email Post-Data Breach

More Details of LastPass Breach: Hackers Used Stolen Encryption Key

A breach at LastPass is the gift that keeps on giving—or taking, depending on your perspective. LastPass parent company GoTo raised the alarm this week that, in addition to stealing encrypted backups ...
Security Boulevard
1 - LastPass Aftermath, LastPass vault de-obfuscator, LastPass iteration count folly

Password manager best practices: Why you should care about password managers’ iteration counts

The post Password manager best practices: Why you should care about password managers’ iteration counts appeared first on Click Armor ...
CircleCI talent cybersecurity

CircleCI Rotates GitHub OAuth Tokens After Security Incident

Following a security incident, CircleCI has completed the process of rotating GitHub OAuth tokens for their customers. CircleCI said Saturday that while customers could still rotate their own tokens, it has “confidence ...
Security Boulevard
LastPass Password Vaults Stolen, Pig Butchering Scams, Okta Source Code Theft

LastPass Password Vaults Stolen, Pig Butchering Scams, Okta Source Code Theft

Things get worse for LastPass as a security breach in November resulted in the theft of customer data, including encrypted password vaults and unencrypted web addresses. Pig butchering scams, a variation of ...
LastPass was hacked in 2022

LastPass was hacked: What to do as a user following their major security breach announcement

The post LastPass was hacked: What to do as a user following their major security breach announcement appeared first on Click Armor ...