The scraped data of 2.6 million DuoLingo users was leaked on a hacking forum, allowing threat actors to conduct targeted phishing attacks using the exposed information.

  • stevedidWHAT@lemmy.world
    link
    fedilink
    English
    arrow-up
    21
    ·
    2 years ago

    Something to note here - with AI, if you’re using any sort of heuristic for your password, it’s pretty simple to work out a pretty good set of possibilities which makes brute force even easier and puts you at risk across the board.

    Always come up with random passwords that are as random as possible. If there’s a path you took to get to a password, in theory it can be worked backward.

    For example I know some people who only change a single letter when changing their passwords which is ultimately trivial to guess if the old password was compromised (hence the need to change the password or the need to proactively work against this possibility)

    • qaz@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      2 years ago

      That’s why I let Bitwarden generate a random 64 character password with special characters and numbers