logo

Feds Link $150M Cyberheist to 2022 LastPass Hacks

ID: 60b36071-2ce3-52de-a35c-98c9ba4a812a

STIX ID: report--60b36071-2ce3-52de-a35c-98c9ba4a812a

Feed Name: Krebs on Security

Threat Score
78/100

Date Published: 2025-03-08

Date Updated: 2026-04-19

Author: BrianKrebs

...
...

This report links the 2022 LastPass breach of encrypted password vaults to an ongoing series of high-value cryptocurrency thefts, concluding attackers likely cracked weaker master passwords to access seed phrases stored in LastPass Secure Notes. Law enforcement (U.S. Secret Service and FBI) corroborated researcher findings in a seizure filing related to a $150M heist involving Ripple co-founder Chris Larsen (approximately $24M recovered); victims were often legacy LastPass users with fewer KDF iterations, enabling offline cracking and rapid cash-outs across many exchange accounts, while LastPass maintains there is no conclusive evidence connecting these thefts to their incidents.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.