Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Additionally, current evidence suggests that the breach was not known on haveibeenpwned prior to it being used

Totally fair, I haven't been following this really closely.

That being said, if someone re-uses passwords once they probably do it a bunch of times, so it's odd to me that they didn't have a process to detect reused passwords and force a change.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: