Well, I mentioned that I was not sure if other managers worked similarly to Lastpass, but this has nothing to do with whether they work the same or not.
Apparently, Bitwarden had been used as phishbate. In the article titled Criminals are going after password manager logins – What to watch out for which was published yesterday, it indicates that the login page was exactly like the real deal, but the URL was completely different.
When you submitted info to the page, it actually redirected you to the real deal.
This is definitely going to be a problem. The Phishing page has been taken offline, but who’s to say that this won’t happen to another manager, which may include Lastpass?
How to protect yourself from this type of thing? Ask for the URL of a service and don’t just rely on Google.
When we were setting up for International Friends, I did find them on Google, but I was in communication and asked for the URL to the site and anything else they wanted to provided me.
They sent the same URL as what I found, and we proceeded.
If you can’t, I’d proceed with caution, especially if you aren’t sure.
This is definitely something that I don’t know how to protect from because sites are always coming online.
I recently got an email supposedly from Sams Club offering me to take a survey, but it had some URL with a TLD of rest. That’s just spam, but this is an example of what is out there now. Without knowing, and with new people on the internet regularly, there isn’t necessarily going to be a good solution to this.
Thanks for reading, and stay well. Stay safe. Learn.
Discover more from Jared's Technology podcast network
Subscribe to get the latest posts sent to your email.