LastPass announces its own two-factor authentication app for Android, iOS, and Windows Phone, supports any TOTP service, similar to Google's Authenticator
LastPass app takes the pain out of two-factor sign-ins — Many will tell you that it's wise to use two-factor authentication to lock down your internet accounts.
Context & Ripple Effects
This launch is the third step in LastPass's post-LogMeIn product arc: the first major release under new ownership added emergency access and password sharing, then the company went freemium by making password management free across every device. A built-in TOTP app completes the bundle — codes generated next to the passwords they protect, on Android, iOS, and even Windows Phone.
First-order effects
- Users who juggle a separate code generator can consolidate: any TOTP service works inside the LastPass app, putting it in direct functional competition with Google Authenticator on the same three platforms.
Second-order effects
- Bundling two-factor codes into the vault deepens switching costs around LastPass's free tier, pressuring standalone authenticators to justify their existence as separate apps.
Third-order effects
- Concentrating every authentication factor in one vault raises the stakes of any single flaw — a risk that materialized when LastPass had to fix an Android bug that let the PIN/fingerprint lock be bypassed to read stored 2FA codes. The counterweight came from the other direction, with LastPass later adding hardware-key support via a Yubico SDK integration on iOS.
The trend: Password managers are absorbing each successive authentication factor — TOTP codes, then hardware keys — turning the vault into the single hub for account access.