29 Million Users Affected in Major Password Manager Breach
A widely-used password manager disclosed a breach in which attackers stole encrypted password vaults belonging to 29 million users. Master passwords were not compromised but stolen vaults could be brute-forced offline.
What Was Stolen
- Encrypted password vaults (AES-256)
- Usernames and email addresses
- Billing names and partial credit card info
Immediate Action Steps
- Change your master password immediately
- Enable 2FA on your password manager
- Change passwords on critical accounts (banking, email)
- Watch for phishing emails — attackers have your email address
The SudoFlare Takeaway
Password managers are still far safer than reusing passwords. But your master password must be long and random. A 20+ character passphrase is essentially uncrackable. If your master password was weak, treat this as a full compromise.