Dashlane explains how attackers managed to download encrypted password vaults

Dashlane has disclosed that attackers successfully accessed fewer than 20 user accounts by brute-forcing API endpoints for device registration. The company mitigated the attack by locking the targeted accounts after detecting the unauthorized activity.
Why it matters
This incident underscores the security risks associated with API endpoints and the importance of robust automated security systems in password management services.
NOW WE KNOW Dashlane explains how attackers managed to download encrypted password vaults By targeting large numbers of users, attackers increased their chances of success.
The report is a factual summary of a security incident based on company disclosures.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in