Following a shared developmental intrusion tracing back to the LastPass breach, malicious actors targeted GoTo's central cloud storage service. The intruders successfully exfiltrated encrypted data backups containing customer configuration files, Central multi-tenant deployment parameters, and salted password hashes.