Ci gaba da bincike a cikin yiwuwar dan gwanin kwamfuta breaches na LastPass asusun via abin da ake kira "credential shaƙewa" ya nuna cewa LastPass ya ɗan da bai kai ga ƙarshe ba. Tsarin LastPass da kansu sun haifar da faɗakarwa.
Rigimar da ke tattare da yuwuwar kutse na asusun LastPass da wasu kamfanoni suka yi ya dauki sabon salo ba zato ba tsammani. Yayin da da farko kamfanin ya nuna cewa karuwar adadin sanarwar karya doka na iya zama sanadin masu kutse ta hanyar amfani da abin da ake kira 'credential stuffing', daga baya an gano wani dalili na daban.
Sanadin a nasu tsarin
Bugu da ari bincike, bisa ga wani ƙarin m version of LastPass' sanarwa, ya nuna cewa tsaro jijjiga imel da aka generated da LastPass' kansa tsarin. Sannan an aika waɗannan faɗakarwar zuwa ƙayyadaddun yanki na masu amfani da LastPass.
LastPass yanzu yana tabbatar da cewa an ƙirƙiri waɗannan faɗakarwar tsaro ta hanyar kuskure. Sai dai ba a bayyana dalilin hakan a cikin sanarwar ba. A kowane hali, LastPass yanzu ya canza tsarin sa don aika faɗakarwar tsaro ta yadda maimaitawa ba zai yiwu ba.
Wasu masu amfani har yanzu suna shakka
Ko wannan zai shawo kan masu amfani da LastPass ya rage a gani. Fita rubuce-rubuce a shafukan sada zumunta yawancin masu amfani da ƙarshen har yanzu suna da shakku. Suna kuma samun matsala wajen dawo da asusunsu.