The scraped data of 2.6 million DuoLingo users was leaked on a hacking forum, allowing threat actors to conduct targeted phishing attacks using the exposed information.

you are viewing a single comment's thread
view the rest of the comments
[–] 29 points 3 years ago (5 children)

Just use a password manager and a unique, long, random generated password for every site. There's no need or reason to know the password to anything other than your password manager and your primary email.

  • source
  • parent
  • hideshow 5 child comments
  • [–] 10 points 3 years ago (4 children)

    in like a decade the use of a password manager will be a bad idea. i don't know how but it will be.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 15 points 3 years ago (3 children)

    Hmm, a single point of access for every password you have? I don't see the problem...

  • source
  • parent
  • hideshow 3 child comments
  • [–] 21 points 3 years ago* (last edited 3 years ago) (1 child)

    The thing is the average person either can't or can't be bothered to remember even a dozen actually secure passwords, so they fall back to a couple of simple derivations of a common password, meaning each and every site a user signs up on represents an additional single point of failure.

  • source
  • parent
  • hideshow 1 child comment