Skip to content
← LibraryTechnique entry
APT-LASTPASS-DEVInitial Access

Dev-Workstation Backup Exfil (LastPass 2022)

Compromise a single engineer's home workstation via outdated third-party media-server software → steal AWS backup keys → exfil full encrypted vault store.

§ Where this technique fits

APT-LASTPASS-DEV is catalogued under the Initial Access tactic of the offensive-security kill-chain. It appears in 1 approved dossier in the registry, typically at step 6 on average.

§ Dossiers chaining this technique

§ What commonly comes next

  1. 01
    Brute Force
    T1110 · Credential Access
    seen 1×