article thumbnail

LastPass: ‘Horse Gone Barn Bolted’ is Strong Password

Krebs on Security

Still, Palant and others impacted by the 2022 breach at LastPass say their account security settings were never forcibly upgraded. In February 2018, LastPass changed the default to 100,100 iterations. And very recently, it upped that again to 600,000. Palant called this latest action by LastPass a PR stunt.

Passwords 263
article thumbnail

Busting SIM Swappers and SIM Swap Myths

Krebs on Security

Samy said a big challenge for mobile stores is balancing customer service with account security. “Ultimately, these attacks rely on the human element and the ability of an employee to override whatever security is in place.” Someone needs to light a fire under some folks to get these protections put in place.”

Mobile 236