

5·
8 hours agoRegarding a malicious server acting under Bitwarden’s fleet: As I see it, the most vulnerable target would be an organization’s self-hosted Bitwarden server.


Regarding a malicious server acting under Bitwarden’s fleet: As I see it, the most vulnerable target would be an organization’s self-hosted Bitwarden server.
Additional vendor responses by Bitwarden to put the remediations and threat models into perspective:
Bitwarden blog post
Bitwarden cryptography report