LastPass confirmed that hackers accessed customer data stored in its Salesforce environment following the Klue supply chain attack on June 12th. The Icarus extortion group compromised Klue's infrastructure using legacy credentials, stealing OAuth tokens that connected Klue to its customers' Salesforce environments. Exposed data includes customer names, phone numbers, email addresses, physical addresses, support case information, and CRM data. LastPass states that its core products, services, and customer vaults were not affected. The company has disabled employee access to Klue, rotated exposed tokens, and notified law enforcement. Users are advised to be wary of phishing attempts and unsolicited communications, and to never share their master password.
Table of contents
Related Articles:25.8K Impressions4 Comments