Page 1 of 2

Data Leak

Posted: Thu Jan 21, 2021 7:41 pm
by Patrick
When visiting the forum this evening I got a message from Safari that I should change my password as the current one had been 'subject to a data leak'?

Anybody know anything about this?

Re: Data Leak

Posted: Thu Jan 21, 2021 8:15 pm
by el48tel
Patrick wrote: Thu Jan 21, 2021 7:41 pm When visiting the forum this evening I got a message from Safari that I should change my password as the current one had been 'subject to a data leak'?

Anybody know anything about this?
Are you sure it was from Safari .... not likely to be ... more likely a scam to get you to reveal your current password. Don't click any links in any email or posts .... or reply to such mails.
Go to the proper sites or procedures to reset passwords.

Re: Data Leak

Posted: Thu Jan 21, 2021 8:38 pm
by MatDz
Patrick wrote: Thu Jan 21, 2021 7:41 pm When visiting the forum this evening I got a message from Safari that I should change my password as the current one had been 'subject to a data leak'?

Anybody know anything about this?
There is small chance Safari goes through your saved passwords and compare them to each other when a data breach happened on one of the websites you are using, then flags all other websites with the same password, e.g.

* Gmail had a leak :mrgreen:
* Safari knows you are using the same password there and on the forum here (because you saved it in the browser);
* When you visit BCSS Sarafi pings you to change your password because it's the same as in the compromised Gmail.

I would change the passwords again just to be safer, and start using a password manager to be actually safe (e.g. https://keepass.info/).

Re: Data Leak

Posted: Thu Jan 21, 2021 9:40 pm
by MikeT
Safari hasn't given me that message.

Re: Data Leak

Posted: Fri Jan 22, 2021 11:51 am
by NaZzAtAzEr
https://haveibeenpwned.com/

Use this website to see if your email has been involved in a data breech. I would advise to change passwords for that website and all other websites that use the same email and password

Re: Data Leak

Posted: Sat Jan 23, 2021 5:27 pm
by ralphrmartin
What it probably means is that you have re-used the same password on several websites, including this one, and there has been a data leak on one of the other websites for which you use the same password. Potentially, that password is now public knowledge and associated with your id, so to be safe, it would be a good idea to change it wherever you use. Very tedious, I know, but this is the price of using the same password on many sites.

Re: Data Leak

Posted: Sat Jan 23, 2021 6:26 pm
by Patrick
Thank you all for the advice. As it happens the password I use for this forum I don't use anywhere else. Should I still change it? What I understood from the message I got was that the Data Leak was from this site, but it doesn't sound like anybody else has had anything.

Re: Data Leak

Posted: Sat Jan 23, 2021 6:29 pm
by MatDz
Patrick wrote: Sat Jan 23, 2021 6:26 pm Thank you all for the advice. As it happens the password I use for this forum I don't use anywhere else. Should I still change it? What I understood from the message I got was that the Data Leak was from this site, but it doesn't sound like anybody else has had anything.
It might have been matched using your email/login, I'd probably change it, if only for peace of mind.

Re: Data Leak

Posted: Sat Jan 23, 2021 8:17 pm
by el48tel
Looking like it's a scam to get you to reveal your password.

Re: Data Leak

Posted: Sun Jan 24, 2021 8:29 am
by ralphrmartin
Patrick wrote: Sat Jan 23, 2021 6:26 pm Thank you all for the advice. As it happens the password I use for this forum I don't use anywhere else. Should I still change it? What I understood from the message I got was that the Data Leak was from this site, but it doesn't sound like anybody else has had anything.
Another thing you can do is install Google Chrome It has a function to check for compromised passwords. That will give you an independent way of seeing what's up.