LastPass confirms customer data stolen in third-party breach via Klue integration
By
Jibin Joseph
Summary
LastPass suffered a data breach where hackers stole sensitive customer information (names, phone numbers, physical addresses, and email addresses). The breach originated from Klue, a third-party market intelligence service integrated with LastPass, whose OAuth tokens were compromised. LastPass detected the incident on June 12 and blocked the unauthorized access.
Source
Key quotes
· 3 pulledPassword management app LastPass has confirmed that sensitive customer data was stolen in a new security incident.
Hackers obtained LastPass OAuth tokens held by Klue and used them to access customer data.
LastPass says it became aware of the incident on June 12 and has since blocked the unauthorized access.
You might also wanna read
Vietnam Airlines Data Breach Exposes 7.5 Million Customer Records
Vietnam Airlines suffered a major data breach in June 2025 when hackers called 'Scattered LAPSUS$ Hunters' compromised the airline's Salesfo
Google Confirms Security Breach and User Data Theft
Google has confirmed a security breach where user data was stolen from one of its databases. The incident is not related to browser updates
forbes.com·10mo agoSubstack Confirms Data Breach Affecting User Email Addresses and Phone Numbers
Substack has confirmed a data breach where an unauthorized third party accessed user data including email addresses, phone numbers, and inte
Vercel Security Breach: OAuth Supply Chain Attack Exposes Platform Environment Variable Risks
A security breach at Vercel exposed how a compromised third-party OAuth application provided long-term access to internal systems, bypassing
Vercel Discloses Security Breach as Hackers Claim to Sell Stolen Data
Cloud development platform Vercel has disclosed a security breach after threat actors claimed to have compromised its systems and are attemp

Allianz Life Confirms Data Breach Affecting Majority of 1.4 Million Customers
Allianz Life, a major U.S. insurance company, has confirmed that hackers stole personal data of the 'majority' of its 1.4 million customers,
Comments
Sign in to join the conversation.
No comments yet. Be the first.
