LastPass
Encyclopedia
LastPass Password Manager is a freemium
password management program developed by LastPass. It is available as a plugin for Internet Explorer
, Mozilla Firefox, Google Chrome
, Opera
, and Safari
. There is also a LastPass Password Manager bookmarklet
for other browsers.
On December 2, 2010, it was announced that LastPass acquired the bookmark synchronizer Xmarks. LastPass password management technology was integrated into the “Identity and Privacy” feature of Internet security company, Webroot
’s newest security suite. Full terms of the licensing deal were not disclosed.
One of the developers of LastPass Password Manager, Sameer, has argued that theoretically the integrity of the software could be verified without making it open source, and mentioned that the developers may be open to the future possibility of making the user interface
of LastPass Password Manager open source.
LastPass Password Manager's security model was extensively covered and approved of by Steve Gibson in his Security Now podcast episode 256.
Freemium
Freemium is a business model that works by offering a product or service free of charge while charging a premium for advanced features, functionality, or related products and services...
password management program developed by LastPass. It is available as a plugin for Internet Explorer
Internet Explorer
Windows Internet Explorer is a series of graphical web browsers developed by Microsoft and included as part of the Microsoft Windows line of operating systems, starting in 1995. It was first released as part of the add-on package Plus! for Windows 95 that year...
, Mozilla Firefox, Google Chrome
Google Chrome
Google Chrome is a web browser developed by Google that uses the WebKit layout engine. It was first released as a beta version for Microsoft Windows on September 2, 2008, and the public stable release was on December 11, 2008. The name is derived from the graphical user interface frame, or...
, Opera
Opera (web browser)
Opera is a web browser and Internet suite developed by Opera Software with over 200 million users worldwide. The browser handles common Internet-related tasks such as displaying web sites, sending and receiving e-mail messages, managing contacts, chatting on IRC, downloading files via BitTorrent,...
, and Safari
Safari (web browser)
Safari is a web browser developed by Apple Inc. and included with the Mac OS X and iOS operating systems. First released as a public beta on January 7, 2003 on the company's Mac OS X operating system, it became Apple's default browser beginning with Mac OS X v10.3 "Panther". Safari is also the...
. There is also a LastPass Password Manager bookmarklet
Bookmarklet
A bookmarklet is Unobtrusive JavaScript stored as the URL of a bookmark in a web browser or as a hyperlink on a web page. The term is a portmanteau of the terms bookmark and applet, however, an applet is not to be confused with a bookmarklet just as JavaScript is not to be confused with Java...
for other browsers.
Overview
Passwords in LastPass Password Manager are protected by a master password and are encrypted locally and are synchronized to any other browser. LastPass Password Manager also has a form filler that automates password entering and form filling. It also supports password generation, site sharing and site logging. LastPass Password Manager offers a premium subscription that includes iPhone, BlackBerry, Android, Windows Phone, Windows Mobile, WebOS and Symbian applications, enhanced support, multi-factor authentication and no advertisements.On December 2, 2010, it was announced that LastPass acquired the bookmark synchronizer Xmarks. LastPass password management technology was integrated into the “Identity and Privacy” feature of Internet security company, Webroot
Webroot Software
Webroot provides Internet security software for consumers, enterprises and small and medium–sized businesses. Originally started in Boulder, CO the company is now headquartered in Broomfield, CO, the company has operations in Australia, Austria, Germany, Ireland, Japan and the United Kingdom.-...
’s newest security suite. Full terms of the licensing deal were not disclosed.
Features
- One master password
- Cross-browser synchronization
- Secure password generation
- Password encryption
- Form filler
- Importing and exporting passwords
- Portable access
- Multifactor authentication
- Fingerprint verification
- Cross-platform availability (and mobile versions for premium)
- Mobile access available here
Source code
LastPass Password Manager is closed source, though many of the extensions can be run in a non-binary mode where the source is available, but LastPass maintains all rights.One of the developers of LastPass Password Manager, Sameer, has argued that theoretically the integrity of the software could be verified without making it open source, and mentioned that the developers may be open to the future possibility of making the user interface
User interface
The user interface, in the industrial design field of human–machine interaction, is the space where interaction between humans and machines occurs. The goal of interaction between a human and a machine at the user interface is effective operation and control of the machine, and feedback from the...
of LastPass Password Manager open source.
Reception
In March 2009, PC Magazine awarded LastPass Password Manager their "Editors' Choice" for password management. LastPass Password Manager has a 4-star rating at the Firefox Add-ons web site with over 600 reviews, and it has been featured on Download Squad, Lifehacker, and Makeuseof.LastPass Password Manager's security model was extensively covered and approved of by Steve Gibson in his Security Now podcast episode 256.
Security breach
On Tuesday, May 3, 2011, LastPass discovered an anomaly in their incoming network traffic, and then another, similar anomaly in their outgoing traffic. Administrators found none of the hallmarks of a classic security breach (for example, database logs showed no evidence of a non-administrator user being elevated to administrator privileges), but neither could they determine the root cause of the anomalies. Furthermore, given the size of the anomalies, it is theoretically possible that data such as email addresses, the server salt, and the salted password hashes were copied from the LastPass database. To address the situation, LastPass decomissioned the "breached" servers so they can be rebuilt, and on May 4, 2011, they requested all users to change their master password. However, the resulting user traffic overwhelmed the login servers, and temporarily administrators were asking users to refrain from changing their password until further notice, having judged that the possibility the passwords themselves could be compromised to be trivially small. LastPass also stated that while there was no direct evidence any customer information was directly compromised, they preferred to err on the side of caution. There have been no verified reports of customer data loss or password leaks since these precautions were taken.See also
- :Category:Password managers
- Apple Keychain
- iMacros for FirefoxIMacrosiMacros is an extension for the Mozilla Firefox, Google Chrome, and Internet Explorer web browsers which adds record and replay functionality similar to that found in web testing and form filler software. The macros can be combined and controlled via JavaScript. Demo macros and JavaScript code...
- KeePassKeePassKeePass Password Safe is an open-source password management utility for Microsoft Windows, with unofficial ports for Linux, Mac OS X, and a variety of other systems.-Cryptography:...
- MittoMittoMitto is a free online password management site that works on any standards-compliant web browser such as Google Chrome, Mozilla Firefox, Safari, and Internet Explorer. For website passwords, Mitto can automatically log users in through an online interface, through a special bookmarklet, or through...
- Offer Assistant
- PageoncePageoncePageonce develops mobile applications to help consumers manage and simplify their daily financial lives. Pageonce has its own account aggregation technology unlike other services that license their account aggregation technology from Yodlee...
- Password managerPassword managerA password manager is software that helps a user organize passwords and PIN codes. The software typically has a local database or a file that holds the encrypted password data for secure logon onto computers, networks, web sites and application data files. Many password managers also work as a form...
- Password SafePassword SafePassword Safe is a free and open source software program for storing passwords in Microsoft Windows. A beta version is also available for Ubuntu and Debian operating systems. A Java-based version is also available on SourceForge.- Design :...
- RoboformRoboformRoboForm is a password management and web form filling program that automates password entering and form filling, developed by Siber Systems, Inc. It is available for many web browsers, including Internet Explorer , Firefox, Google Chrome, as well as support for mobile devices such as Palm, Pocket...
- Sticky Password ManagerSticky Password ManagerSticky Password Manager is a form filler and password management program. It allows computer users to create and manage their passwords and other data that is typically entered into online forms. Sticky Password remembers and automatically fills in login, password and other personal data fields...