Some password-manager apps that store data centrally get it right

LastPass has been in the news a number of times in the last few years, and not in a good way. The firm makes password-management software for multiple platforms, synced through their central servers. In mid-2015, thieves copied its main password database, but because of good password storage design, the likelihood is that no users had any data extracted. In January 2016, a researcher found a user-interface spoofing bug, since fixed. In mid 2016, another researcher figured out how to fool LastPass with an autofill operation (fixed) and another reported a phishing vulnerability (also fixed). Then a few weeks ago, another found browser-based extension vulnerabilities (also fixed, except for one older client, being retired).

To read this article in full or to leave a comment, please click here

Subscribe to Applenews247.Com Newsletter

Leave a Reply

Your email address will not be published. Required fields are marked *

*


*

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>