{"id":144412,"date":"2025-10-25T09:59:09","date_gmt":"2025-10-25T09:59:09","guid":{"rendered":"https:\/\/www.europesays.com\/ie\/144412\/"},"modified":"2025-10-25T09:59:09","modified_gmt":"2025-10-25T09:59:09","slug":"lastpass-warns-are-you-dead-master-password-hack-attacks-ongoing","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ie\/144412\/","title":{"rendered":"LastPass Warns \u2018Are You Dead?\u2019 Master Password Hack Attacks Ongoing"},"content":{"rendered":"<p><img decoding=\"async\" class=\" top-image\" src=\"https:\/\/www.europesays.com\/ie\/wp-content\/uploads\/2025\/10\/1761386349_883_960x0.jpg\" alt=\"LastPass logo on smartphone sitting on top of green illuminated keyboard.\" data-height=\"1885\" data-width=\"2833\" fetchpriority=\"high\" style=\"position:absolute;top:0\"\/><\/p>\n<p>LastPass issues &#8216;Are You Dead?&#8217; mater password hacking threat warning.<\/p>\n<p>SOPA Images\/LightRocket via Getty Images<\/p>\n<p>While your email account password is a primary target for hackers, as <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/19\/gmail-account-lockout-warning---users-must-check-this-1-setting-now\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/19\/gmail-account-lockout-warning---users-must-check-this-1-setting-now\/\" target=\"_self\" aria-label=\"Gmail users\" rel=\"nofollow noopener\">Gmail users<\/a> will be only too aware, with certain <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/20\/gmail-and-outlook-users-warned-as-image-based-hack-attacks-surge-in-2025\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/20\/gmail-and-outlook-users-warned-as-image-based-hack-attacks-surge-in-2025\/\" target=\"_self\" aria-label=\"email attacks surging\" rel=\"nofollow noopener\">email attacks surging<\/a> as a result, there\u2019s only one password that can truly claim to hold the keys to your online kingdom. Yes, we are talking about your password manager master password. No wonder, then, that hackers will try anything to relieve you of it. LastPass, as one of the most popular password managers, is no stranger to these attempts. I\u2019ve already reported how, oh the irony, an email claiming that <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/17\/lastpass-confirms-hack-threat---warns-do-not-change-master-password\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/17\/lastpass-confirms-hack-threat---warns-do-not-change-master-password\/\" target=\"_self\" aria-label=\"LastPass accounts had been hacked\" rel=\"nofollow noopener\">LastPass accounts had been hacked<\/a> was being used in one such phishing campaign. Now, LastPass itself has issued a warning to all users as it has identified an ongoing attack that exploits the password manager inheritance process to allow family members to access legacy user vaults. Here\u2019s what you need to know about the \u2018Are You Dead?\u2019 LastPass master password threat.<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-1\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/24\/paypal-users-warned-do-not-pay-do-not-phone-as-attackers-strike\/\" target=\"_blank\" aria-label=\"PayPal Users Warned \u2018Do Not Pay, Do Not Phone\u2019 As Attackers Strike\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/24\/paypal-users-warned-do-not-pay-do-not-phone-as-attackers-strike\/\" rel=\"nofollow noopener\">ForbesPayPal Users Warned \u2018Do Not Pay, Do Not Phone\u2019 As Attackers StrikeBy Davey Winder<\/a>The \u2018Are You Dead?\u2019 LastPass Master Password Threat Explained<\/p>\n<p>As phishing lures go, asking a potential victim of a password hacking attack if they are dead would seem, at least on the surface, to be rather more ridiculous than most. However, the devil is always in the details. First, there\u2019s the fact that the email itself appears for all intents and purposes to come from a LastPass alerts email address. Then, there\u2019s the wording, which is cleverly constructed to grab your attention, perhaps because it is so bizarre. The subject line of \u201cLegacy Request Opened (URGENT IF YOU ARE NOT DECEASED)\u201d instills the necessary urgency, albeit the block capitals used should be a red flag, as no genuine organization would likely adopt such formatting. Then, the message body itself begins with: \u201cA death certificate was uploaded by a family member to regain access to the LastPass account XXXXXXXXXXXXX.\u201d<\/p>\n<p>\u201cThe email goes on to include a statement that a live case has been opened and includes fabricated information regarding a supposed agent assigned to the case,\u201d <a class=\"color-link\" href=\"https:\/\/blog.lastpass.com\/posts\/possible-cryptochameleon-social-engineering-campaign-targeting-lastpass-customers-and-more\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" data-ga-track=\"ExternalLink:https:\/\/blog.lastpass.com\/posts\/possible-cryptochameleon-social-engineering-campaign-targeting-lastpass-customers-and-more\" aria-label=\"LastPass warned\">LastPass warned<\/a> users, \u201cincluding an agent ID number, the date the case opened, and the case priority, all of which are false.\u201d<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-2\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/25\/act-now---microsoft-issues-emergency-windows-update-as-attacks-begin\/\" target=\"_blank\" aria-label=\"Act Now \u2014 Microsoft Issues Emergency Windows Update As Attacks Begin\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/10\/25\/act-now---microsoft-issues-emergency-windows-update-as-attacks-begin\/\" rel=\"nofollow noopener\">ForbesAct Now \u2014 Microsoft Issues Emergency Windows Update As Attacks BeginBy Davey Winder<\/a><\/p>\n<p>There is, as there always is, <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/06\/09\/fbi-warns-iphone-and-android-messaging-app-users-not-to-click\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/daveywinder\/2025\/06\/09\/fbi-warns-iphone-and-android-messaging-app-users-not-to-click\/\" target=\"_self\" aria-label=\"a link to be clicked\" rel=\"nofollow noopener\">a link to be clicked<\/a>. In this case, it directs the potential victim to what purports to be a cancellation request, but is actually intended to hack credentials by asking for the LastPass master password. The attackers even remind the victim never to share their master password with anyone as security is important. Yet, as LastPass has confirmed, \u201cno one at LastPass will ever ask for your master password.\u201d<\/p>\n<p>LastPass has advised users to forward any emails to forward the email abuse@lastpass.com and warned that it is also aware of the attackers using telephone calls, and details of the latter can be sent in an email to abuse@lastpass.com.<\/p>\n","protected":false},"excerpt":{"rendered":"LastPass issues &#8216;Are You Dead?&#8217; mater password hacking threat warning. SOPA Images\/LightRocket via Getty Images While your email&hellip;\n","protected":false},"author":2,"featured_media":144413,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[74],"tags":[85330,9413,18,7243,19,17,85334,85333,85331,85335,85332,83928,85329,82],"class_list":{"0":"post-144412","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-technology","8":"tag-access-your-password-vault-after-death","9":"tag-death","10":"tag-eire","11":"tag-hacking","12":"tag-ie","13":"tag-ireland","14":"tag-lastpass-death-hack","15":"tag-lastpass-death-scam","16":"tag-lastpass-hack","17":"tag-lastpass-master-password","18":"tag-lastpass-scam","19":"tag-password","20":"tag-password-manager","21":"tag-technology"},"share_on_mastodon":{"url":"https:\/\/pubeurope.com\/@ie\/115434223468975177","error":""},"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/posts\/144412","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/comments?post=144412"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/posts\/144412\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/media\/144413"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/media?parent=144412"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/categories?post=144412"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ie\/wp-json\/wp\/v2\/tags?post=144412"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}