Close Menu
TechCentralTechCentral

    Subscribe to the newsletter

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    Facebook X (Twitter) YouTube LinkedIn
    WhatsApp Facebook X (Twitter) LinkedIn YouTube
    TechCentralTechCentral
    • News

      Starlink to South Africa: ‘We are ready to invest’

      17 June 2025

      Vodacom CEO Joosub bags R71m in pay – but taxman will take a big cut

      17 June 2025

      Major rift opens between Microsoft and OpenAI

      17 June 2025

      South Africa pioneered drone laws a decade ago – now it must catch up

      17 June 2025

      South African AI energy start-up in R32m funding round

      17 June 2025
    • World

      Trump Mobile dials into politics, profit and patriarchy

      17 June 2025

      Samsung plots health data hub to link users and doctors in real time

      17 June 2025

      TechCentral Nexus S0E2: South Africa’s digital battlefield

      16 June 2025

      Yahoo tries to make its mail service relevant again

      13 June 2025

      Qualcomm shows off new chip for AI smart glasses

      11 June 2025
    • In-depth

      Grok promised bias-free chat. Then came the edits

      2 June 2025

      Digital fortress: We go inside JB5, Teraco’s giant new AI-ready data centre

      30 May 2025

      Sam Altman and Jony Ive’s big bet to out-Apple Apple

      22 May 2025

      South Africa unveils big state digital reform programme

      12 May 2025

      Is this the end of Google Search as we know it?

      12 May 2025
    • TCS

      TechCentral Nexus S0E1: Starlink, BEE and a new leader at Vodacom

      8 June 2025

      TCS+ | The future of mobile money, with MTN’s Kagiso Mothibi

      6 June 2025

      TCS+ | AI is more than hype: Workday execs unpack real human impact

      4 June 2025

      TCS | Sentiv, and the story behind the buyout of Altron Nexus

      3 June 2025

      TCS | Signal restored: Unpacking the Blue Label and Cell C turnaround

      28 May 2025
    • Opinion

      Beyond the box: why IT distribution depends on real partnerships

      2 June 2025

      South Africa’s next crisis? Being offline in an AI-driven world

      2 June 2025

      Digital giants boost South African news media – and get blamed for it

      29 May 2025

      Solar panic? The truth about SSEG, fines and municipal rules

      14 April 2025

      Data protection must be crypto industry’s top priority

      9 April 2025
    • Company Hubs
      • Africa Data Centres
      • AfriGIS
      • Altron Digital Business
      • Altron Document Solutions
      • Altron Group
      • Arctic Wolf
      • AvertITD
      • Braintree
      • CallMiner
      • CYBER1 Solutions
      • Digicloud Africa
      • Digimune
      • Domains.co.za
      • ESET
      • Euphoria Telecom
      • Incredible Business
      • iONLINE
      • Iris Network Systems
      • LSD Open
      • NEC XON
      • Network Platforms
      • Next DLP
      • Ovations
      • Paracon
      • Paratus
      • Q-KON
      • SevenC
      • SkyWire
      • Solid8 Technologies
      • Telit Cinterion
      • Tenable
      • Vertiv
      • Videri Digital
      • Wipro
      • Workday
    • Sections
      • AI and machine learning
      • Banking
      • Broadcasting and Media
      • Cloud services
      • Contact centres and CX
      • Cryptocurrencies
      • Education and skills
      • Electronics and hardware
      • Energy and sustainability
      • Enterprise software
      • Fintech
      • Information security
      • Internet and connectivity
      • Internet of Things
      • Investment
      • IT services
      • Lifestyle
      • Motoring
      • Public sector
      • Retail and e-commerce
      • Science
      • SMEs and start-ups
      • Social media
      • Talent and leadership
      • Telecoms
    • Events
    • Advertise
    TechCentralTechCentral
    Home » Information security » Password manager LastPass hit by ‘security incident’

    Password manager LastPass hit by ‘security incident’

    LastPass has experienced a “security incident” in which an unauthorised third party gained access to “certain elements” of customers’ information.
    By Staff Reporter1 December 2022
    Twitter LinkedIn Facebook WhatsApp Email Telegram Copy Link
    News Alerts
    WhatsApp

    LastPass, a popular password manager, has experienced a “security incident” in which an unauthorised third party gained access to “certain elements” of customers’ information.

    There is no evidence to suggest that the threat actor obtained access to users’ sensitive passwords.

    In a blog post addressed to “all LastPass customers” on Wednesday, CEO Karim Toubba said: “We have determined that an unauthorised party, using information obtained in the August 2022 incident, was able to gain access to certain elements of our customers’ information. Our customers’ passwords remain safely encrypted due to LastPass’s zero-knowledge architecture,” he wrote.

    Our customers’ passwords remain safely encrypted due to LastPass’s zero-knowledge architecture

    The August incident referred to by Toubba was when LastPass detected “unusual activity within portions of the LastPass development environment”. At the time, Toubba said that there was “no evidence that this incident involved any access to customer data or encrypted password vaults”.

    “We have determined that an unauthorised party gained access to portions of the LastPass development environment through a single compromised developer account and took portions of source code and some proprietary LastPass technical information,” he wrote at the time.

    In a later blog post, published in September and following further investigation, he said: “Although the threat actor was able to access the development environment, our system design and controls prevented them from accessing any customer data or encrypted password vaults.”

    In Wednesday’s blog post about the latest incident, Toubba wrote: “We are working diligently to understand its scope … and identify what specific information has been accessed. In the meantime, we can confirm that LastPass products and services remain fully functional.”

    He promised to publish updates as soon as the company learns more about the incident.  – © 2022 NewsCentral Media

    Get TechCentral’s daily newsletter



    Karim Toubba LastPass
    Subscribe to TechCentral Subscribe to TechCentral
    Share. Facebook Twitter LinkedIn WhatsApp Telegram Email Copy Link
    Previous ArticleDStv adds Disney+ to Streama box
    Next Article HPE ‘held talks’ to buy Nutanix

    Related Posts

    LastPass hacking incident worse than feared

    23 December 2022

    LastPass hacked

    26 August 2022

    FNB’s new password policy makes its customers less secure

    20 August 2019
    Company News

    Altron: a brand journey, a birthday celebration and a bet on Joburg’s future

    17 June 2025

    7 benefits of social media integration in WordPress

    17 June 2025

    Paratus Zimbabwe and PowerTel strike milestone deal

    17 June 2025
    Opinion

    Beyond the box: why IT distribution depends on real partnerships

    2 June 2025

    South Africa’s next crisis? Being offline in an AI-driven world

    2 June 2025

    Digital giants boost South African news media – and get blamed for it

    29 May 2025

    Subscribe to Updates

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    © 2009 - 2025 NewsCentral Media

    Type above and press Enter to search. Press Esc to cancel.