This rule is part of a beta feature. To learn more, contact Support.

Set up the lastpass integration.

Cette page n'est pas encore disponible en français, sa traduction est en cours.
Si vous avez des questions ou des retours sur notre projet de traduction actuel, n'hésitez pas à nous contacter.

Goal

Detect when a LastPass user attempts to modify a vault item.

Strategy

This rule monitors LastPass account logs to determine when a vault item is modified. This could indicate an attempt to modify an item.

Triage and response

  1. Investigate the user: {{@usr.name}} who triggered the event {{@evt.name}} involving vault item {{@VID}} within the vault.
  2. If this action was unintended by the user:
    • Rotate the user’s LastPass master password
    • Identify all the items that were modified and rotate the necessary authentication credentials