LastPass

LastPass

Password management and secure vault solutions

Overview

LastPass provides password management and secure vaults for individuals and businesses. Its core product is a password manager that securely stores passwords and auto-fills them, reducing breach risk and improving convenience. It also offers secure notes, form filling, and multi-factor authentication to protect data. The service runs on a subscription model with free and premium plans for individuals and customizable enterprise plans with advanced security, administrative controls, and compliance tools. LastPass differentiates itself through ease of use, strong security measures, and a reliable reputation, serving a broad customer base from individuals to large enterprises with robust security features and administrative capabilities. The company aims to simplify protecting online credentials and sensitive information while improving security and user productivity across personal and organizational use.

About LastPass

Simplify's Rating
Why LastPass is rated
C-
Rated C on Competitive Edge
Rated C on Growth Potential
Rated D+ on Differentiation

Industries

Consumer Software

Enterprise Software

Cybersecurity

Company Size

501-1,000

Company Stage

Acquired

Total Funding

$110M

Headquarters

Boston, Massachusetts

Founded

2008

Get referred to LastPass

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • The June 17, 2026 Mobile Smart Scanner cuts password-entry friction for new users.
  • April 28, 2026 updates add browser visibility, a refreshed Admin Console, and Mac improvements.
  • 2026 settlement accounts get Dark Web Monitoring, supporting retention and reactivation.

What critics are saying

  • June 23, 2026 Klue breach exposed names, emails, phones, addresses, and support cases.
  • The January 2026 ICO fined LastPass £1.2 million for the 2022 breach.
  • Repeated breaches and the 2026 settlement accelerate enterprise churn to 1Password and Dashlane.

What makes LastPass unique

  • LastPass Mobile Smart Scanner launched May 5, 2026, converting photos into vault entries.
  • Business Max, announced April 28, 2026, bundles SaaS Monitoring and SaaS Protect.
  • LastPass Authenticator added Face ID, Apple Watch, and cloud backup in July 2026.

Help us improve and share your feedback! Did you find this helpful?

Funding

Total Funding

$110M

Above

Industry Average

Funded Over

1 Rounds

Acquisition funding comparison data is currently unavailable. We're working to provide this information soon!
Acquisition Funding Comparison
Coming Soon

Benefits

Health Insurance

Generous parental leave

Flexible Paid Time Off

Home Office Stipend

Remote Work Options

Continuous learning and development opportunities

Employee Assistance Program

Remote-first culture

High-growth, collaborative environment with inclusive teams

Market-leading password manager

Peer-to-peer recognition

Short-Term or Remote-Centric Work Arrangements

Growth & Insights and Company News

Headcount

6 month growth

2%

1 year growth

2%

2 year growth

2%
SoS Daily News
Aug 2nd, 2026
LastPass hit again: what users need to know about the latest breach.

LastPass hit again: what users need to know about the latest breach. By: Jim Stickley and Tina Davis August 2, 2026 Password management company LastPass is once again notifying customers about a security incident involving exposed user information. According to the company, the latest breach did not occur directly on LastPass systems. Instead, attackers reportedly gained access to customer information through a compromise at Klue, a third-party software provider used by LastPass. The stolen data is believed to include customer support case information and certain personal details submitted by users while seeking assistance. At the time of disclosure, LastPass said there was no evidence that encrypted password vaults, master passwords, or stored credentials were accessed during the incident. However, security experts warn that even limited personal information can be valuable to cybercriminals. For users, the biggest concern is the increased risk of phishing attacks. Criminals may use information obtained from support tickets to create convincing phishing emails, text messages, (smishing) or phone calls (vishing) that appear to come from LastPass. If you use LastPass, be especially cautious of unexpected communications requesting login credentials, multi-factor authentication codes, or account information. You should never give these out to anyone. Never click links in unsolicited emails claiming your account needs immediate attention. Instead, visit the LastPass website directly through your browser. Remember that using a password manager, no matter which one it is, comes with a risk of your information being used to steal all of your passwords stored in them. That said, if there really is no other way you can keep track of using one password per website, proceed with caution. Whatever you do, make sure your master password is most definitely unique. Users should also enable multi-factor authentication, review account activity regularly, and ensure their master password remains unique and strong. Staying alert may be the best defense against criminals looking to turn stolen support data into a much larger security problem. The identity of the attackers has not been officially confirmed, some believe it was the group Icarus, a newly established extortion group. They also claim to have stolen information from several other companies. Investigators are still examining the incident, and no public attribution has been announced. However, the breach follows a series of security incidents that have kept LastPass under intense scrutiny since its major 2022 compromise.

News4Hackers
Jul 27th, 2026
LastPass Authenticator adds Face ID, Apple Watch, cloud backup for 2FA.

LastPass Authenticator adds Face ID, Apple Watch, cloud backup for 2FA. Post Views: 7 LastPass Authenticator is a free application designed to deliver two-factor authentication (2FA) for user accounts and services that utilize time-based one-time passwords (TOTP). Enrollment process. The setup for new accounts is streamlined, allowing users to scan a QR code, import one from a saved image in the device's photo library, or manually input a secret key. To simplify configuration, the application provides preconfigured templates for numerous online services, such as Amazon, Amazon Web Services, Binance, Coinbase, Discord, Dropbox, Evernote, GitHub, PayPal, Slack, Twitch, and X. Custom entries can also be created for any service that employs TOTP authentication. * Amazon * Amazon Web Services * Binance * Coinbase * Discord * Dropbox * Evernote * GitHub * PayPal * Slack * Twitch * X The interface displays accounts in a searchable format, featuring service icons, account names, and a timer indicating when the current verification code will expire. Users can modify account details, categorize entries into groups, and manage multiple authenticators through a unified dashboard. The app supports transferring accounts between devices and exporting them as QR codes for backup purposes. Security measures. To safeguard locally stored authentication data, the application offers multiple protective features. Users can secure the app using biometric authentication via Face ID or a personal identification number (PIN). The Tap to Reveal function ensures verification codes remain concealed until accessed. Cloud backup capabilities allow users to restore accounts after replacing or resetting a device. A built-in Security Checkup feature reviews account settings to ensure optimal protection. Additional functionalities. Verification codes can be extracted directly from screenshots stored on the device, eliminating the need to switch between devices during setup. Users can preview the next authentication code before the current one expires, customize the display location of upcoming codes, and group digits for improved readability. * Extract verification codes from screenshots * Preview next authentication code * Customize display location of upcoming codes * Group digits for improved readability Conclusion. The integration of standard TOTP authentication with push-based approvals, biometric security, cloud backup, Apple Watch compatibility, and flexible import options positions LastPass Authenticator as a comprehensive tool for managing two-factor authentication across multiple online services through a centralized application.

Wired
Jun 27th, 2026
LastPass users' data stolen again in breach via AI firm Klue

LastPass has disclosed another data breach, this time affecting customer contact information and support data. The breach resulted from a compromise at AI business intelligence firm Klue, where attackers stole access tokens for Klue customers, including LastPass, and used them to extract data from Salesforce and other platforms. The stolen information includes names, phone numbers, email addresses, physical addresses, support case data and sales-related information. LastPass emphasised that its own infrastructure was not breached and password vaults remain secure. The company warned customers to remain vigilant against potential phishing attacks leveraging the exposed contact details. This incident adds to LastPass's series of significant data breaches in recent years. The company advised users to exercise caution regarding unsolicited communications requesting sensitive information.

dArt Studio
Jun 27th, 2026
Cybersecurity under siege: data breaches and nation-state attacks on the rise.

Cybersecurity under siege: data breaches and nation-state attacks on the rise. A recent string of high-profile data breaches has left many wondering about the safety of their personal information. LastPass, a popular password manager, has suffered another significant breach, with attackers gaining access to customer data including names, phone numbers, and email addresses. The breach occurred due to a vulnerability at Klue, an AI business intelligence firm, which allowed hackers to compromise access tokens and steal data from integrated platforms like Salesforce. LastPass has assured customers that their password vaults remain secure, but warned of potential phishing attacks and social engineering attempts. Meanwhile, former national security adviser John Bolton has pleaded guilty to mishandling classified defense information, and Microsoft has disrupted the infrastructure of two major malware operations, Amadey and StealC, in a joint effort with Europol. The operation, dubbed Operation Endgame, seized servers and domains, and recovered millions of stolen access credentials. In Australia, the Security and Intelligence Organisation has announced the establishment of teams to counter nation-state cyberattacks on critical infrastructure, after discovering hackers had compromised a major provider's network. As the World Cup approaches, soccer fans are being warned of scams and phishing attempts. OpenAI has launched an improved version of its GPT-5.5-Cyber model, and introduced a new initiative, Patch the Planet, to support open-source projects on vulnerability patching and security issues. With the AI arms race between China and the US escalating, experts are warning of a potential 'Chernobyl moment' in the world of cybersecurity. As the situation continues to unfold, one thing is clear: cybersecurity is under siege, and it's up to individuals and organizations to remain vigilant and take steps to protect themselves. dArt Studio installs AI for local businesses in Broward & Palm Beach County, FL. dArt Studio reply within 1 business hour.

TEISS
Jun 24th, 2026
LastPass customers' data exposed in breach at third-party technology partner.

LastPass customers' data exposed in breach at third-party technology partner. News 24 Jun 2026 Password manager provider LastPass is notifying its customer base of a data breach that resulted in the theft of customer information and support records. The breach did not affect LastPass's own systems but rather occurred at Klue, a technology partner the company uses. Hackers who gained access to Klue's infrastructure extracted an extensive array of personal data belonging to LastPass customers, including names, phone numbers, email addresses and physical addresses. The attackers also obtained customer support case records and sales-related information. LastPass said its infrastructure remained intact and that customer password vaults were not compromised. The scope of the incident extends beyond LastPass. Several other cybersecurity companies, including HackerOne, Recorded Future and Tanium, have also reported data theft stemming from the same breach at Klue. Klue CEO Jason Smith disclosed that the company identified suspicious activity in its systems on June 12. A hacking group operating under the name Icarus claimed responsibility for the breach and has publicly stated that it will release the stolen data if a ransom is not paid. Neither Smith nor LastPass representatives responded to requests for information about the number of affected customers. The data stolen in the incident is believed to contain fragments of sensitive information. Customer support case records typically include details about billing issues and account access problems but can also contain credentials and government-issued identification documents from previous incidents. The breach marks another security incident for LastPass, which disclosed a major breach in 2022. In that incident, hackers stole the complete repository of customer password vaults. Although the vaults were protected by master passwords known only to individual customers, attackers were able to crack weaker passwords offline and access the encrypted contents. The 2022 breach was subsequently linked to several cryptocurrency thefts, with hackers suspected of obtaining digital wallet keys from compromised password vaults. LastPass operates a customer base exceeding 33 million users and approximately 1.6 million paying subscribers as of 2024.

Recently Posted Jobs

Sign up to get curated job recommendations

LastPass is Hiring for 8 Jobs on Simplify!

Find jobs on Simplify and start your career today

Don't see your dream role? Check out thousands of other roles on Simplify. Browse all jobs →