Industry News

ETH Zurich audits Bitwarden cryptography against malicious server scenarios

Other password managers considered for this report were either: Not selected due to the closed source nature of the solution. Required extensive ...

Exploitable Flaws Found in Cloud-Based Password Managers - BankInfoSecurity

Claims by leading stand-alone password managers that their implementation of "zero knowledge encryption" means stored passwords can withstand the ...

Researchers find critical vulnerabilities in cloud-based password managers - iTnews

... password manager infrastructure. Such a "malicious server threat model" assumes attackers had gained control and could make servers behave ...

Study Uncovers 25 Password Recovery Attacks in Major Cloud Password Managers

Academic study finds 25 attack methods in major cloud password managers exposing vault, recovery, and encryption design risks.

Vulnerabilities in Password Managers Allow Hackers to Change Passwords

They fell into four categories based on the password manager feature they exploited: Key escrow: full vault compromise via unauthenticated key ...

Password managers don't protect secrets if pwned - The Register

The premise of zero-knowledge encryption is that user passwords are encrypted on their device, and the password manager's server acts merely as a dumb ...

Swiss researchers find password manager security gaps - SWI swissinfo.ch

This makes password managers a likely target for hacker attacks, said Kenneth Paterson, computer science professor at ETH Zurich. Providers of ...

Passwords to passkeys: Staying ISO 27001 compliant in a passwordless era

Annex A 5.17 (Authentication Information) requires organization-wide procedures for allocating and managing authentication credentials, including ...

Data theft: Researchers find major security gaps in password managers - Bluewin (CH)

All other passwords are stored behind a master password in a so-called vault. This simplifies access to sensitive data, such as bank accounts or ...

Passwork Unveils Enhanced Security Features with 7.4 Update to Strengthen Enterprise ...

Passwork — the best self-hosted password manager for enterprises. Passwork — the best self-hosted password manager for enterprises. The ...

Fake ad blocker breaks PCs in new malware extension scam - Fox News

4) Use a password manager to limit fallout. If malware gains access to your system, stored browser passwords are often the first target. A password ...

Popular password managers fall short of “zero-knowledge” claims - CyberInsider

Researchers from ETH Zurich have identified serious architectural weaknesses in three leading cloud-based password managers, Bitwarden, LastPass, ...

Bitwarden announces Cupid Vault secure password-sharing feature for free users

Password manager Bitwarden has announced a new feature to share passwords with trusted people: Cupid Vault.

Google releases emergency Chrome update to fix zero-day flaw in CSS engine

Best Windows Password Manager · Best Mac Password Manager · Best iPhone Password Manager · Best Android Password Manager · Best Family Password ...

Password managers less secure than promised - myScience

18.02.2026 - Researchers from have discovered serious security vulnerabilities in three popular, cloud-based password managers.

Password managers less secure than promised - ETH Zürich

Researchers from ETH Zurich have discovered serious security vulnerabilities in three popular, cloud-based password managers.