article thumbnail

Timeline of the latest LastPass data breaches

CSO Magazine

On November 30, 2022, password manager LastPass informed customers of a cybersecurity incident following unusual activity within a third-party cloud storage service. While LastPass claims that users’ passwords remain safely encrypted, it admitted that certain elements of customers’ information have been exposed.

article thumbnail

Hacked home computer of engineer led to second LastPass data breach

CSO Magazine

Password management company LastPass, which was hit by two data breaches last year , has revealed that data exfiltrated during the first intrusion, discovered in August, was used to target the personal home computer of one of its devops engineers and launch a second successful cyberatttack, detected in November.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Episode 247: Into the AppSec Trenches with Robinhood CSO Caleb Sima

The Security Ledger

Paul speaks with Caleb Sima, the CSO of the online trading platform Robinhood, about his journey from teenage cybersecurity phenom and web security pioneer, to successful entrepreneur to an executive in the trenches of protecting high value financial services firms from cyberattacks. Caleb Sima is the CSO at Robinhood.

CSO 52
article thumbnail

GoDaddy WordPress data breach: A timeline

CSO Magazine

GoDaddy WordPress data breach timeline. Using a compromised password, an unauthorized third party accessed the provisioning system in our legacy code base for Managed WordPress.” million active and inactive customers. Here is a timeline of the incident featuring detail and insight from the company and experts across the field.

article thumbnail

The password hall of shame (and 10 tips for better password security)

CSO Magazine

Pop quiz: What has been the most popular — and therefore least secure — password every year since 2013? If you answered “password,” you’d be close. Qwerty” is another contender for the dubious distinction, but the champion is the most basic, obvious password imaginable: “123456.”

Passwords 145
article thumbnail

PayPal sued for negligence in data breach that affected 35,000 users

CSO Magazine

A pending class action lawsuit accuses online payments giant PayPal of failing to adequately safeguard the personal information of its users, leaving them vulnerable to identity theft and related ills at the hands of the unidentified perpetrators of a data breach that occurred late last year.

article thumbnail

How corporate data and secrets leak from GitHub repositories

CSO Magazine

He wanted to leak an SSH username and password into a GitHub repository and see if any attacker might find it. The biggest eye-opener for me was how quickly it was exploited," he tells CSO. Check out this checklist for minimizing damage from a data breach. | Get the latest from CSO by signing up for our newsletters. ]

CSO 126