1Password discloses security incident linked to Okta breach (www.bleepingcomputer.com)
from leo@lemmy.linuxuserspace.show to technology@lemmy.ml on 26 Oct 2023 04:31
https://lemmy.linuxuserspace.show/post/58479

#technology

threaded - newest

601error@lemmy.ca on 26 Oct 2023 05:05 next collapse

Sounds like 1P handled it about as well as they could, and the attacker didn’t get very far.

nbailey@lemmy.ca on 26 Oct 2023 05:15 collapse

Yeah, all things considered this is a good case of proper segmentation, working security controls, and good incident response & crisis communication. Compare this to LastPass to illustrate the difference in how it was handled.

master5o1@lemmy.nz on 26 Oct 2023 06:33 collapse

Heh, I joined a company that used 1Password. Loved it. I set up a personal account to replace my use of browser built in password management.

The company got acquired and the acquirer replaced it with their corporate solution, LastPass. Then the LP breach happened and they switched to Keeper. Still prefer 1Password.

tagliatelle@lemmy.world on 26 Oct 2023 19:35 collapse

My company switched to LP after the breach. it chief must have gotten a good deal!

aksdb@feddit.de on 26 Oct 2023 19:58 collapse

LP is probably very audit-friendly … (in regards to its stored data).

sunbeam60@lemmy.one on 26 Oct 2023 20:31 collapse

No user data was accessed and even if it had, through the use of the very high-entropy recovery code, it wouldn’t have mattered. 1Password continues to be The Good People™️