more than 1 BILLION Yahoo accounts hacked..... Again.....

Scott Cooper's Grand Slam

Member
SoSH Member
Jul 12, 2008
4,314
New England
I can't recommend a password manager enough. It doesn't matter if you use Dashlane, Lastpass, or 1Password, but it's so important to have strong, unique passwords. Your Yahoo account has been hacked. That stinks. But if you're using unique passwords, _only_ your Yahoo account (and other accounts that send "password reset" emails to it) have been hacked. If you're using your Yahoo password across multiple sites (and we all are. There are limits to human memory, and most of us have to remember and change several asinine passwords for work, which leads to ridiculous repetition like MyAmazingPassw0rd12), then all of those sites are hacked, too.

Pay for a password manager. It's digital life insurance.
 

swiftaw

Member
SoSH Member
Jan 31, 2009
3,441
I can't recommend a password manager enough. It doesn't matter if you use Dashlane, Lastpass, or 1Password, but it's so important to have strong, unique passwords. Your Yahoo account has been hacked. That stinks. But if you're using unique passwords, _only_ your Yahoo account (and other accounts that send "password reset" emails to it) have been hacked. If you're using your Yahoo password across multiple sites (and we all are. There are limits to human memory, and most of us have to remember and change several asinine passwords for work, which leads to ridiculous repetition like MyAmazingPassw0rd12), then all of those sites are hacked, too.

Pay for a password manager. It's digital life insurance.
Couldn't agree more. And if you use the Apple ecosystem, Safari has a built in password manager that syncs your passwords to all your apple devices.
 

foulkehampshire

hillbilly suburbanite
SoSH Member
Feb 25, 2007
5,100
Wesport, MA
I can't recommend a password manager enough. It doesn't matter if you use Dashlane, Lastpass, or 1Password, but it's so important to have strong, unique passwords. Your Yahoo account has been hacked. That stinks. But if you're using unique passwords, _only_ your Yahoo account (and other accounts that send "password reset" emails to it) have been hacked. If you're using your Yahoo password across multiple sites (and we all are. There are limits to human memory, and most of us have to remember and change several asinine passwords for work, which leads to ridiculous repetition like MyAmazingPassw0rd12), then all of those sites are hacked, too.

Pay for a password manager. It's digital life insurance.
Keepass is free. Using that and a random strong password generator does the trick as well.
 

Scott Cooper's Grand Slam

Member
SoSH Member
Jul 12, 2008
4,314
New England
Couldn't agree more. And if you use the Apple ecosystem, Safari has a built in password manager that syncs your passwords to all your apple devices.
I hear you. Using the Apple Keychain (the built-in manager for the Apple ecosystem) or the password management/sync tools built into Firefox and Chrome isn't a bad idea. Something's better than nothing. But if you're committed to using a password manager, you're probably better off making sure that, if compromised, the password manager isn't also tied to a critical account (Apple or Google).

This is good advice, but I'd recommend again for a separate password manager. For Apple folks, you'll love 1Password. It's highly polished. The secure browser is great. It's integrated with TouchID, and you can use 1Password to log into several popular apps.

It also has apps for Windows and Android for cross-platform password synchronization, but the Windows and Android apps are admittedly less polished. No less functional, though.

Keepass is free. Using that and a random strong password generator does the trick as well.
Good call. I don't know anything about Keepass, but it looks legit.
 

AlNipper49

Huge Member
Dope
SoSH Member
Apr 3, 2001
44,902
Mtigawi
If you guys are using a password manager that doesn't require two factor... well I guess it beats using the same password everywhere but it's still not really bulletproof.
 

BroodsSexton

Member
SoSH Member
Feb 4, 2006
12,647
guam
This is good advice, but I'd recommend again for a separate password manager. For Apple folks, you'll love 1Password. It's highly polished. The secure browser is great. It's integrated with TouchID, and you can use 1Password to log into several popular apps.
Fully endorsed. 1Password has given me much peace of mind.
 
Last edited:

Ale Xander

Hamilton
SoSH Member
Oct 31, 2013
73,121
Amateur question:

what if the password manager gets hacked? Isn't it better to have different passwords for different accounts?
 

AlNipper49

Huge Member
Dope
SoSH Member
Apr 3, 2001
44,902
Mtigawi
Amateur question:

what if the password manager gets hacked? Isn't it better to have different passwords for different accounts?
Well for personal crap that doesn't matter , like ESPN, that doesn't matter I just generate a random. For real stuff the password that I store is slightly different.

It doesn't have to be crazy. Like add one to every number. Trust me, if LastPass was really hacked there would be so many easy pickings that they'll just pass over stuff like that.

A cool one is to use the keys above the keys on the keyboards. So asdf would be qwer
 

edoug

Member
SoSH Member
Jul 15, 2005
6,007
Sorry if this a stupid question but if they're hacking Yahoo what difference does a password manager make? Yahoo has to have your info somewhere.
 

Marceline

Well-Known Member
Lifetime Member
SoSH Member
Sep 9, 2002
6,462
Canton, MA
A password manager allows you to use a different password for each site (since most of us can't keep track of 100 passwords), so if Yahoo gets hacked then they can't use your password to get into other accounts besides Yahoo.

It also allows you to generate passwords with 20+ random characters, so if a site gets hacked it's less likely your password can be cracked (if they are hashing correctly)
 

RIFan

Member
SoSH Member
Jul 19, 2005
3,090
Rhode Island
My Yahoo account had so many attempted hacks I went with the account key a while ago. About once every few weeks I get a notice on my phone saying someone is trying to log in. I only use the Yahoo account for when I need to provide an email to register for something online.
 

SumnerH

Malt Liquor Picker
Dope
SoSH Member
Jul 18, 2005
32,004
Alexandria, VA
A password manager allows you to use a different password for each site (since most of us can't keep track of 100 passwords), so if Yahoo gets hacked then they can't use your password to get into other accounts besides Yahoo.

It also allows you to generate passwords with 20+ random characters, so if a site gets hacked it's less likely your password can be cracked (if they are hashing correctly)
Yeah. Lots of sites are surprisingly dumb, but somewhere like Yahoo isn't going to be storing your password. If you have a complex enough one (which password managers help with) you should be reasonably safe from your password being deciphered even after they're hacked.
 

canderson

Mr. Brightside
SoSH Member
Jul 16, 2005
39,573
Harrisburg, Pa.
Someone stole my identity in early November and is still using my info to apply for bank loans and set up mail forwarding.

I hope everyone who steals this stuff gets murdered by sporks.