Practicing good internet hygiene is a great thing: different passwords for different websites, using passwords that are not easily guessable and longer (example: using a 3 word password separated by a special character i.e., dog7car-HATCH.
Anyway a newsletter email sent by the admin of haveibeenpwned.com brought up the fact that there is another huge data breach; while most of this data seems to be around the year 2020, who knows what else lurks out there and however they were able to obtain the data in the first place. Hence the importance of having different passwords for different website, and also making sure to use two factor authentication (if available) and/or passkeys (the fancy new way to authenticate without passwords)
I always recommend to friends and clients to use a password manager (a necessary evil nowadays) to manage all of these things. Heck, using a built in one (like Apple’s implementation) is better than nothing, in my honest opinion. I do have a client that likes to literally write down his passwords and accounts in a little notebook that he tends to leave in a safe most of the time. I’ve told him about my recommendations, but they prefer their style.
One of the most recent data dumps can be searched through here: https://search.0t.rocks/ – from what I can suss out, most of the passwords have been redacted, but I will admit that I only looked up some emails and other family members information to look at it.
I might be doing these technology posts in another way, but for now I guess it will stay up like this.