Get the latest tech news
High-severity vulnerability in Passwordstate credential manager. Patch now.
Vulnerability can be exploited to gain access to customers’ crown jewels.
The maker of Passwordstate, an enterprise-grade password manager for storing companies’ most privileged credentials, is urging them to promptly install an update fixing a high-severity vulnerability that hackers can exploit to gain administrative access to their vaults. A for the update shows that it also “strengthened security and approach to preventing potential Clickjacking associated with our Browser Extension if users visit compromised web sites.” No further details were available, and Click Studios representatives didn’t immediately respond to emailed questions. Dan Goodin is Senior Security Editor at Ars Technica, where he oversees coverage of malware, computer espionage, botnets, hardware hacking, encryption, and passwords.
Or read this on ArsTechnica