Home / Software & Gaming / Security / LastPass has a security bug that is putting accounts at risk

LastPass has a security bug that is putting accounts at risk

It looks like LastPass is facing a security issue as a dangerous zero-day bug has been found, which can apparently completely compromise user accounts according to reports this week. Right now, millions of users trust LastPass as a safe tool to store and generate secure passwords, but password vaults could apparently be compromised quite easily.

According to a report from The Register, while little is known publicly about the bug, it would grant attackers with complete access to user accounts. The bug was discovered by Tavis Ormandy, who has previously uncovered major security issues with several anti-virus programs.

review-lastpass

Ormandy took to Twitter to say: “Are people really using this lastpass thing? I took a quick look and can see a bunch of obvious critical problems. I'll send a report asap”, he later followed that up by confirming that he has reported the issue to LastPass and that it did pave the way for total remote compromise of accounts. The security team is working on a fix as we speak, so if you use LastPass, check for an update.

So far, we haven't heard of any attacks stemming from this bug prior to its fix and from the sounds of it, a fix should be here today, so it is unlikely that this will end up causing any major issues.

KitGuru Says: Millions of people use LastPass so a bug like this could have been dangerous for a lot of people. However, LastPass seems to be on the case already, so the fix should arrive before anyone is adversely affected. 

Become a Patron!

Check Also

Marvel Rivals has a major security issue enabling Remote Code Execution

A Remote Code Execution exploit has been discovered in Marvel Rivals, allowing hackers to remotely spread malware through the game.

One comment

  1. From my understanding about this Bug, as long as you use 2FA your account still cant be compromised. (Unless they have access to your 2FA)

We've noticed that you are using an ad blocker.

Thank you for visiting KitGuru. Our news and reviews teams work hard to bring you the latest stories and finest, in-depth analysis.

We want to be as informative as possible – and to help our readers make the best buying decisions. The mechanism we use to run our business and pay some of the best journalists in the world, is advertising.

If you want to support KitGuru, then please add www.kitguru.net to your ad blocking whitelist or disable your adblocking software. It really makes a difference and allows us to continue creating the kind of content you really want to read.

It is important you know that we don’t run pop ups, pop unders, audio ads, code tracking ads or anything else that would interfere with the KitGuru experience. Adblockers can actually block some of our free content, such as galleries!