Hacker News new | ask | show | jobs
by catalypso 1272 days ago
It seems that it was a social engineering attack. From their notice: https://blog.lastpass.com/2022/12/notice-of-recent-security-...

> some source code and technical information were stolen from our development environment and used to target another employee

1 comments

That's still very vague, though.

How was the initial (src + docs) breach performed? How do they escalate that into a successful social engineering attack, particularly since the breach was known of?

Did the targeted employee have unfettered access to all this customer data?

Will be interesting to know the fuller story. I'm guessing that's only a matter of time.