I still maintain that passwords hosted on any developers server are a target. This has been demonstrated most recently "LastPass’s full investigation points to a coordinated effort using multiple techniques to target both broad and specific vectors for the company. It’s a sophisticated attack that happened in stages across multiple months" 
They keep hammering away...there is a goldmine of authentication data to be had at these online password storage companies.
	
	
		
			
				
					
						 
					
				
			
			
				
					
						
							 www.pcworld.com
						
					
					www.pcworld.com
				
			
		
	
	
		
			
		
		
	
				
			They keep hammering away...there is a goldmine of authentication data to be had at these online password storage companies.
 
					
				The latest LastPass fail came from an employee's home PC
A key component of the 2022 hack was an employee's home computer that was running vulnerable third-party software.
				 www.pcworld.com
						
					
					www.pcworld.com
				 
 
		 
 
		 
 
		 
 
		 
					
				 
 
		