Story perspectives
Study Reveals Major Security Flaws in Password Managers
2/17/2026
1 of 1
Story summary
- A study by ETH Zurich and Università della Svizzera Italiana found security flaws in Bitwarden, LastPass, and Dashlane, detailing 12, 7, and 6 attacks respectively.
- The vulnerabilities stem from flawed encryption practices and legacy code support.
- Despite vendors' zero-knowledge encryption claims, credentials could be exposed if servers are compromised.
- Vendors acknowledged the findings and are pursuing security improvements, though concerns remain about sophisticated hackers exploiting the weaknesses.
