Just happened to me one hour ago and got scared shitless. Time Monday, December 27, 2021 at 3:50 PM EST
Location UNITED STATES
IP address 107.173.195.83
Actions taken, in this order: - Head to *Advanced Options* -> *View account history* to see if anything suspicious is going on (nothing so far)
- Disable Lastpass MFA and use Google Authenticator (Authy)
- *Account Settings* -> click on *Show Advanced Settings* -> *Destroy Sessions* (to see if anyone is actively logged in)
- *Account Settings* -> click on *Show Advanced Settings* -> *Country Restriction* to my country only (luckily not in the US as the bot was)
- Change Master Password
Also moments earlier: - Investigating all Mac processes
- Disabled all Chrome extensions and deleted most (should have made a list)
Let's hope it's not as bad as it seems.Edit#1 | Following IP addresses are reported in the thread so far: 160.116.88.235
160.116.231.145
160.116.88.235
107.173.195.83
107.173.195.213
154.202.117.78
196.19.204.79
|
To be safe you would probably want to disable that then change your password again. Just don't lose your new password as you then can't revert.
See https://support.logmeininc.com/lastpass/help/recover-your-lo...