The scraped data of 2.6 million DuoLingo users was leaked on a hacking forum, allowing threat actors to conduct targeted phishing attacks using the exposed information.

you are viewing a single comment's thread
view the rest of the comments
[–] 29 points 2 years ago (1 child)

Just use a password manager and a unique, long, random generated password for every site. There's no need or reason to know the password to anything other than your password manager and your primary email.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 9 points 2 years ago (1 child)

    in like a decade the use of a password manager will be a bad idea. i don't know how but it will be.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 14 points 2 years ago (2 children)

    Hmm, a single point of access for every password you have? I don't see the problem...

  • source
  • parent
  • hideshow 4 child comments
  • [–] 21 points 2 years ago* (last edited 2 years ago) (1 child)

    The thing is the average person either can't or can't be bothered to remember even a dozen actually secure passwords, so they fall back to a couple of simple derivations of a common password, meaning each and every site a user signs up on represents an additional single point of failure.

  • source
  • parent
  • hideshow 2 child comments