LastPass Customer Data Stolen in Third-Party Breach as Security Incidents Mount Globally

LastPass has notified customers of another data breach, this time stemming from a compromise at AI business intelligence firm Klue. Attackers obtained access tokens for Klue customers, including LastPass, and used them to extract data from Salesforce and other integrated platforms. The exposed information includes customer names, phone numbers, email addresses, physical addresses, support case data, and sales-related data. LastPass stated the breach did not affect its own infrastructure or password vaults.

“We recommend that customers remain vigilant of potential phishing attacks or social engineering attempts, which could leverage exposed contact details,” the company wrote in its customer notification, urging caution around unsolicited emails, phone calls, or requests for sensitive information.

In a separate development, former national security adviser John Bolton pleaded guilty on Friday to a single count of mishandling and illegally retaining classified defense information. Bolton, 77, struck a plea deal recommending no more than five years in prison and a $2.25 million fine, though US District Judge Theodore Chuang will make the final sentencing determination at a hearing scheduled for October 28, 2026. Bolton may withdraw his guilty plea if Chuang imposes harsher terms than the deal specifies.

Also this week, Microsoft, Europol, and other partners announced the disruption of infrastructure linked to the Amadey and StealC infostealers as part of Operation Endgame. The action targeted 326 servers and 142 domains, flagged approximately $47 million in stolen cryptocurrency, and recovered up to 27 million stolen access credentials. Microsoft credited AI-assisted analysis for identifying that both malware families shared backend infrastructure, enabling a coordinated takedown.

Australia’s Security and Intelligence Organisation (ASIO) disclosed that nation-state hackers had compromised the network of an Australian critical infrastructure provider and were mapping systems to enable potential sabotage. ASIO Director General Mike Burgess confirmed the attackers had also acquired login credentials for active users, including IT staff responsible for network security. ASIO announced it is establishing dedicated teams to counter such threats.

Together, these incidents underscore ongoing vulnerabilities across both private-sector platforms and critical national infrastructure, with third-party supply chains and insider credentials emerging as recurring attack vectors.

Source: WIRED

This article was generated by AI and cites original sources.
Scroll to Top