Hacker News new | ask | show | jobs
by brianpgordon 4642 days ago
> Passwords can be either "shared" (used to auto-fill forms but not viewed) or "given".

What's preventing someone from filling a password box and reading its value from memory? The fact that this is even a feature makes me suspicious about their security claims.

1 comments

Lastpass acknowledges this and tells you that a shared password can be retrieved, but for most employees, it would be more work than it is probably worth to view that password. Also, as another commenter pointed out, as soon as a employee leaves the company, Lastpass makes it VERY easy for one person to change the passwords and everyone with access gets their version updated automatically.