Hacker News new | ask | show | jobs
by foreverCarlos 1276 days ago
Even though this is correct, it doesn’t address all possible consequences. It looks like not all fields were encrypted: at a minimum URLs but also very likely fields like “notes” and more. If you had any sensitive info outside of username/password it’s recommended to start mitigating that.

Note: secure notes is not the same as the “notes” field. Secure notes are encrypted.

Edit: Also it is unclear whether records like Bank Accounts, Social Security Numbers, etc have been fully encrypted.