Skip to content
Phishing campaigns target LastPass and Bitwarden users with fake security alerts

Phishing campaigns target LastPass and Bitwarden users with fake security alerts

Feeds.4Sysops IT News July 14, 2026

A sophisticated phishing campaign is currently targeting users of LastPass and Bitwarden by sending fraudulent security notifications. These emails use spoofed domains like lastpassnewsletter.com to trick recipients into believing their account security policies have changed. The messages often include urgent calls to action, such as reviewing updated terms or responding to alleged unauthorized access attempts. Source

Extracted Entities

Attack Types (1)

MITRE ATT&CK (1)