

7·
2 months agoRegarding a malicious server acting under Bitwarden’s fleet: As I see it, the most vulnerable target would be an organization’s self-hosted Bitwarden server.


Regarding a malicious server acting under Bitwarden’s fleet: As I see it, the most vulnerable target would be an organization’s self-hosted Bitwarden server.


Just hold on very tight so you don’t release your sunblocking apparatus into the atmosphere.
Additional vendor responses by Bitwarden to put the remediations and threat models into perspective:
Bitwarden blog post
Bitwarden cryptography report