Forum Moderators: open

Message Too Old, No Replies

LastPass Browser Extension Bug Resolved

         

engine

2:57 pm on Sep 17, 2019 (gmt 0)

WebmasterWorld Administrator 10+ Year Member Top Contributors Of The Month



LastPass browser extension affected by a security bug was only with Chrome and Opera browsers, and the company now says that a fix was rolled out and anyone using the extensions should automatically receive the updates.

To exploit this bug, a series of actions would need to be taken by a LastPass user including filling a password with the LastPass icon, then visiting a compromised or malicious site and finally being tricked into clicking on the page several times. This exploit may result in the last site credentials filled by LastPass to be exposed.


[blog.lastpass.com...]