article thumbnail

LastPass: ‘Horse Gone Barn Bolted’ is Strong Password

Krebs on Security

By 2013, new LastPass customers were given 5,000 iterations by default. Still, Palant and others impacted by the 2022 breach at LastPass say their account security settings were never forcibly upgraded. Palant said that for many older LastPass users, the initial default setting for iterations was anywhere from “1” to “500.”

Passwords 320
article thumbnail

It’s Still Easy for Anyone to Become You at Experian

Krebs on Security

A few days after that April 2021 story, KrebsOnSecurity broke the news that an Experian API was exposing the credit scores of most Americans.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Twitter Fined $150 Million for Misuse of 2FA User Data

SecureWorld News

Federal Trade Commission (FTC) and the Department of Justice (DOJ) charged Twitter with a $150 million penalty for " deceptively using account security data for targeted advertising.". Twitter, like many other social media websites, asks users to provide their phone number and email address to better protect their account.

article thumbnail

How to Lose a Fortune with Just One Bad Click

Krebs on Security

Tony got into bitcoin back in 2013 and has been investing in it ever since. Both Griffin and Tony say they continue to receive “account security” calls from people pretending to work for Google or one of the cryptocurrency platforms.