LastPass has boosted security for its users after a security researcher alerted the company of a phishing attack he devised to steal users’ login and two-factor authentication credentials. Sean Cassidy, CTO of Praesidio, demonstrated the phishing attack, which he calls “LostPass,” last week at ShmooCon. “We think this is a very serious problem for two main reasons,” said Praesidio CEO Edgardo Nazario. “First, LastPass is a very popular password manager. Second, the phishing attack we uncovered is fairly simple to implement and execute.”
Phishing Attack Could Net LastPass Credentials
Posted by: John P. Mello Jr. January 19, 2016 10:56 AMLastPass has boosted security for its users after a security researcher alerted the company of a phishing attack he devised to steal users’ login and two-factor authentication credentials. Sean Cassidy, CTO of Praesidio, demonstrated the phishing attack, which he calls “LostPass,” last week at ShmooCon. “We think this is a very serious problem for two main reasons,” said Praesidio CEO Edgardo Nazario. “First, LastPass is a very popular password manager. Second, the phishing attack we uncovered is fairly simple to implement and execute.”