Tuesday, August 11, 2026
LIVEThe Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///The Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///
Subscribe
Cyber Security
Independent · Digital
Thehackingpost
CybersecurityAI-assisted

Phishing Alert: Fake ‘LastPass Hack’ Emails Spreading Malware

On Mon, Oct 13, 2025, a new phishing campaign targeting LastPass users was identified. The campaign disseminates deceptive emails falsely claiming to be from “hello@lastpasspulse.blog” or “hello@lastpassgazette.blog” with the subject line “We Have Been…

On Mon, Oct 13, 2025, a new phishing campaign targeting LastPass users was identified. The campaign disseminates deceptive emails falsely claiming to be from “hello@lastpasspulse.blog” or “hello@lastpassgazette.blog” with the subject line “We Have Been Hacked – Update Your LastPass Desktop App to Maintain Vault Security.”

Contrary to these claims, LastPass has not been compromised. The emails use fear tactics and urgency to mislead recipients into downloading malicious software.

The emails resemble authentic LastPass communications and urge users to update their desktop app to protect their vaults. However, the embedded links redirect to malicious domains rather than legitimate LastPass pages. These domains include “lastpassdesktop.com” (IP 172.67.147.36) and “lastpassgazette.blog” (IP 84.32.84.32). Another domain, “lastpassdesktop.app” (IP 172.67.219.2), has been pre-registered, suggesting further phishing activities.

Hosted by NICENIC, a known provider resistant to takedown requests, these domains aim to exploit the U.S. holiday weekend’s reduced security monitoring.

Threat Actor Tactics and Technical Indicators

The campaign primarily relies on social engineering, exploiting panic and urgency to deceive users into executing malware. Indicators of compromise include:

On Mon, Oct 13, 2025, a new phishing campaign targeting LastPass users was identified.
Chloe Simmons · Thehackingpost

Sender Addresses: Authentic LastPass servers do not use “@lastpasspulse.blog” or “@lastpassgazette.blog.” Domain Registrations: Recent registrations with minimal WHOIS data, unaffiliated with LastPass. Hosting Provider: Use of NICENIC, known for illicit operations. Timing: Launched during a holiday to exploit monitoring delays.

The phishing sites lack proper TLS certificates, and although warnings from Cloudflare exist, they may be ignored by users under pressure.

LastPass users should remain cautious, noting that LastPass will not request master passwords or unverified updates. If suspicious emails are received:

Avoid clicking links or downloading attachments. Verify the sender’s domain for errors. Hover over links to verify the destination domain. Report such emails to abuse@lastpass.com.

Advertisement

LastPass is working with domain registrars, hosting providers, and law enforcement on takedowns. Cloudflare has already placed warnings on the malicious sites. Users are advised to enable multi-factor authentication on LastPass accounts and maintain updated antivirus software to enhance security.

By staying informed and scrutinizing unexpected security alerts, users can secure their credentials and protect their password vaults effectively.

Based on reporting by GBHackers.

AI transparency. This article was produced with the assistance of artificial intelligence and published under human editorial oversight. AI systems can make mistakes. Read how we use AI (EU AI Act, Art. 50).
Related Stories