An attacker could try to guess your master password, then use your per-user-salt and authentication hash to determine if their guess was correct. [
] If your master password is weak or if your password reminder makes it easy-to-guess, then the attacker could significantly reduce the number of attempts needed to guess it correctly.
im not use lastpass im use excel on local storage but this is seriously problem i hope all user read this news and change his password
i want to ask if you have lastpass acc and you delete all your data in lastpass are hacker can't aces your data ? (because your data has been removed) ?