An ongoing phishing campaign targets LastPass and Bitwarden users with fake emails claiming security breaches, tricking recipients into installing remote access tools. These campaigns exploit outdated software vulnerabilities and impersonate trusted password managers, posing significant security threats. #LastPass #Bitwarden #Syncro #ScreenConnect #Phishing
Keypoints
- The phishing campaign uses convincing emails to lure users into downloading malicious binaries.
- The malware installs the Syncro MSP agent to enable remote access via ScreenConnect software.
- LastPass confirms it has not suffered any security breach; the messages are social engineering attempts.
- Targeted users include both LastPass and Bitwarden account holders, with similar tactics employed.
- Security firms are blocking access to the malicious landing pages, emphasizing the importance of verifying official sources.