3 ms·
How would they know which passwords were breached? The data leak was from a different site and not from 23andme. Additionally, current evidence suggests that th
by dpkonofa 3y ago
How would they know which passwords were breached? The data leak was from a different site and not from 23andme. Additionally, current evidence suggests that the breach was not known on haveibeenpwned prior to it being used and the reused credentials were tested over a period of months using a botnet.
- deleted 3y ago[deleted]
- disgruntledphd2 3y ago> Additionally, current evidence suggests that the breach was not known on haveibeenpwned prior to it being used Totally fair, I haven't been following this really closely. That being said, if someone re-uses passwords once they probably do it a bunch of times, so it's odd to me that they didn't have a process to detect reused passwords and force a change.