Skip to main content
  1. Home
  2. Computing
  3. News

Using LastPass? You need to switch urgently, says security firm

Add as a preferred source on Google

It’s a good idea to use one of the best password managers to keep your logins safe, but now a security company is warning that one of the most popular password managers in the world is not safe to use.

The extraordinary claim comes from Intego, a firm that specializes in Mac security. Intego made its assertion based on a series of security breaches LastPass has suffered in recent months, the way LastPass has responded to those incidents, and the underlying technology LastPass uses to protect customer accounts.

A dark mystery hand typing on a laptop computer at night.
Andrew Brookes / Getty Images

In its report, Intego outlined the LastPass saga, from its initial disclosure of a breach in August 2022 up to an investigation by rival password manager 1Password in December. That timeline paints a picture of a password manager with questionable practices and technology, Intego states.

Recommended Videos

In August 2022, LastPass notified users that its development environment had been accessed by an unauthorized third party but that no customer data was taken. Then, LastPass issued a new statement in November stating that hackers had taken “certain elements of … customers’ information.”

Finally, in December, LastPass admitted the data accessed by the hackers was used to trick a company employee into handing over keys to some customer credentials, which were then used to access and decrypt customer data.

Questionable practices

Man using a Macbook Pro at a desk.
Ash Edmonds / Unsplash

However, Intego maintains that third-party analyses of the breach suggest a more troubling scenario. According to security researcher Wladimir Palant, for example, LastPass’s statements were “full of omissions, half-truths, and outright lies.” One of Palant’s allegations is that LastPass’ implementation of a password-strengthening algorithm is not considered strong enough based on industry standards, making users’ vaults far too easy to hack into.

Rival password manager 1Password has added its opinion into the mix, claiming that it would cost a hacker $100 or less to crack the master passwords protecting many LastPass vaults, such is the weakness of LastPass’ hashing methods.

All of that has led Intego to state that, “given what we now know about LastPass — both how the company operates and its technology — we do not recommend using LastPass as a password manager.”

How to keep your passwords safe

password manager lifestyle image
Image used with permission by copyright holder

It’s a remarkable statement to make given LastPass’ popularity. LastPass itself claims it has over 33 million users — if the claims about its lax security are correct, that’s a huge number of people whose accounts, passwords and credit card data are all now potentially vulnerable.

Right now, Intego advises LastPass users to immediately begin migrating their accounts to another password manager. Once that’s complete, the company recommends users update all of the passwords that had been stored in LastPass with fresh replacements.

It goes to show that not even the most popular services are immune to hacking attacks and security breaches. Whether you use a password manager or not, you can protect yourself by using strong, unique passwords that are not used on multiple sites. That way, one breach won’t lead to all your other accounts being compromised.

Alex Blake
Alex Blake has been working with Digital Trends since 2019, where he spends most of his time writing about Mac computers…
Google’s new desktop mode makes one thing clear: Samsung DeX was onto something
Android 16 finally brings a real desktop mode to Pixel phones, but Google’s long-awaited move mostly proves Samsung spent years getting the hard parts right
File, Webpage, Person

I’ve been waiting for Android to take desktop mode seriously for years. Back in 2019, I bought a OnePlus 7 Pro and wasted an embarrassing amount of time trying to brute-force its half-baked desktop mode into something useful.

The idea made perfect sense to me even then. Phones were already absurdly powerful, and the thought of carrying one real computer in my pocket felt less like science fiction and more like delayed common sense.

Read more
Anthropic launches Claude design to simplify visual creation with AI
Finally, AI that designs your slides so you don’t have to
Claude

Anthropic has introduced a new AI-powered design tool called Claude Design, aimed at helping users create visual content such as prototypes, presentations, and marketing assets through simple conversational inputs. The product, developed under Anthropic Labs, is currently available in research preview for paid Claude subscribers and is being rolled out gradually.

Claude Design is powered by the company’s latest vision model, Claude Opus 4.7, and is positioned as a tool that bridges the gap between technical design expertise and everyday creative needs.

Read more
AI triggered a RAMmageddon so bad that Apple looks like the sensible choice
Laptop prices got so stupid in 2026, that Apple turned into the value king.
Student using MacBook Neo in classroom.

I really didn't want to believe it, but here we are. Apple is now looking like the sensible laptop brand. Not the cool underdog. Not the affordable alternative. Apple, in 2026. The reason is not that the company suddenly became generous, but rather the rest of the competition has suddenly become so deranged that a MacBook lineup starting at $599 feels weirdly grounded.

Apple's MacBook Neo starts at $599, while Microsoft's own 13-inch Surface Laptop now starts at $1,199 after this month's price hikes. This isn't a small gap that you can ignore. Meanwhile, Apple's MacBook Air with M5 starts at $1,099 with 16GB of memory and 512GB of storage, which looks like one of the few premium laptops still priced by human beings.

Read more