After some Dashlane users were locked out of accounts and a limited number of encrypted password vaults were downloaded, the hacker attack methodology has been revealed.

Brute-force attacks bypassed 2FA on some Dashlane accounts on May 31, 2026, enabling fewer than 20 encrypted vault downloads.

Dashlane has been targeted in a brute-force attack campaign that resulted in a limited number of encrypted vaults being downloaded.