/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

LastPass says customer data was accessed after hackers breached its third-party cloud storage, shared with parent GoTo, using info stolen in an August 2022 hack

LastPass says unknown attackers breached its cloud storage using information stolen during a previous security incident from August 2022.

BleepingComputer Sergiu Gatlan

Context & Ripple Effects

LastPass had said the August intrusion gave a hacker four days of system access but found no evidence that customer data or encrypted vaults were reached. The new disclosure ties that earlier incident to a breach of cloud storage shared with GoTo, reversing the earlier bounded account of the incident.

The related coverage then shows the scope widening further, with a stolen backup of encrypted and unencrypted vault data attributed to cloud-storage keys taken from a LastPass employee. That progression makes the cloud environment and credentials—not just the initial system access—the central security failure.

First-order effects

  • LastPass customers are now affected by confirmed access to customer data, rather than the earlier assurance that no such data had been accessed.
  • GoTo is directly exposed because the compromised cloud storage was shared with LastPass, extending the incident beyond the password-manager operation.

Second-order effects

  • LastPass must reassess disclosures and incident controls after its earlier finding of no evidence of customer-data access was superseded by the cloud-storage breach.
  • The later vault-backup disclosure raises the stakes for LastPass’s security response, shifting attention from the initial intrusion to how employee-derived information enabled access to stored customer data.

Third-order effects

  • If this breach pattern persists, password-management providers will be judged on whether employee access and cloud-storage credentials are segmented tightly enough to prevent an initial compromise from becoming customer-data exposure.
  • Shared infrastructure within software groups becomes a broader trust and containment issue: an incident at one unit can create security consequences for the parent’s adjacent services.

The trend: The incident is part of a widening breach pattern in which an initial corporate intrusion becomes more consequential through reused employee information and shared cloud infrastructure.

Discussion

  • @hackingdave Dave Kennedy on x
    Data breach in third party cloud storage service used by LastPass. Passwords not impacted however customer information obtained. https://blog.lastpass.com/...
  • @db @db on x
    So we all just going back to using meemaw's password book & pen? https://twitter.com/...
  • @mdudas Mike Dudas on x
    LastPass breached for the 2nd time in 4 months. Highly recommend you move to literally any other service or system to protect your account information. You cannot count on these 🤡's. https://twitter.com/...