Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    We’re encouraged by Wednesday’s benign inflation data and strong neocloud earnings

    August 12, 2026

    How the Clacton by-election will be counted

    August 12, 2026

    US tries to override New York gambling laws, orders Kalshi to keep operating

    August 12, 2026
    Facebook X (Twitter) Instagram
    Addison Markets
    • Home
    • USA
    • Europe
    • Business
    • Investing
    • Tech
    • Politics
    • Contact Us
    Addison Markets
    Home»Tech»Dashlane explains how attackers managed to download encrypted password vaults
    Tech

    Dashlane explains how attackers managed to download encrypted password vaults

    franperez66q@protonmail.comBy franperez66q@protonmail.comJune 5, 2026No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email



    That means the chances of the attackers decrypting one of the encrypted vaults they obtained is very small in the event the master password was strong, meaning long, randomly generated, and has high entropy. However, not everyone uses such master passwords. In the event the master password was included in word lists exchanged by password crackers, the chances of success would be higher, although still unlikely.

    Broadly speaking, the incident has similarities to the 2022 LastPass breach, which also allowed attackers to obtain encrypted user vaults. Eventually, the attackers managed to obtain decrypted information from some of them. The success was the result of two things.

    First, certain fields, such as website URLs, remained unencrypted in vaults. That meant attackers could read them even without the master password. Second, some of the stolen vaults used outdated algorithms that didn’t adequately intensify the process for converting the plain-text password into a hash. Dashlane has said that no user fields in vaults are unencrypted. Further, when algorithms are periodically strengthened to account for advances in cracking abilities, the process occurs automatically, with no interaction required. The algorithm update process for LastPass vaults at the time came with more user friction.

    Dashlane’s initial notification left out key details of the attack and led to considerable confusion about the ongoing risk users faced.

    Out of an abundance of caution, both master passwords and the contents of any of the recovered Dashlane vaults should be changed immediately to reduce the chance, however unlikely, that the attackers succeed in breaking the master password. Unaffected Dashlane users don’t need to take any such action.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    franperez66q@protonmail.com
    • Website

    Related Posts

    We’re encouraged by Wednesday’s benign inflation data and strong neocloud earnings

    August 12, 2026

    US tries to override New York gambling laws, orders Kalshi to keep operating

    August 12, 2026

    Google’s Pixel 11 puts Gemini at center of AI phone battle with Apple

    August 12, 2026

    Booksellers suspect AI firms are buying and then destroying rare books

    August 12, 2026

    Meta and Nvidia plant flag in open-weight AI race led by Chinese Labs

    August 12, 2026

    Did poop enable the evolution of complex animals?

    August 12, 2026
    Leave A Reply Cancel Reply

    Top Reviews
    Editors Picks

    We’re encouraged by Wednesday’s benign inflation data and strong neocloud earnings

    August 12, 2026

    How the Clacton by-election will be counted

    August 12, 2026

    US tries to override New York gambling laws, orders Kalshi to keep operating

    August 12, 2026

    Ministers push ahead with housing asylum seekers on ex-military sites

    August 12, 2026
    © 2026 All right reserved
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.