After “Mother of All Breaches,” Update Passwords on Compromised Sites

January’s big security news was the Mother of All Breaches, the release of a massive database containing 26 billion records built from previous breaches across numerous websites, including Adobe, Dropbox, LinkedIn, and Twitter. It’s unclear how much of the leaked data is new, but it’s a good reminder to update your passwords for accounts on compromised sites, especially those you reused on another site. Cybernews has a leak checker that reports which breached sites include your data.

Apple also has a tool for you that can help.  Now that Passwords is one of the system settings on your Mac or iOS device you can click on “Security Recommendations”  and the Password AutoFill passwords list in iOS, iPadOS, and macOS indicate which of a your saved passwords will be reused with other websites, passwords that are considered weak, and passwords that have been compromised by a data leak.

  • Passwords are marked reused if the same password is seen used for more than one saved password across different domains.

  • Passwords are marked weak if they may be easily guessed by an attacker. iOS, iPadOS, and macOS detect common patterns used to create memorable passwords, such as using words found in a dictionary, common character substitutions (such as using “p4ssw0rd” instead of “password”), patterns found on a keyboard (such as “q12we34r” from a QWERTY keyboard), or repeated sequences (such as “123123”). These patterns are often used to create passwords that satisfy minimum password requirements for services, but are also commonly used by attackers attempting to obtain a password using brute force.Because many services specifically require a four- or six-digit PIN code, these short passcodes are evaluated with different rules. PIN codes are considered weak if they are one of the most common PIN codes, if they are an increasing or decreasing sequence such as “1234” or “8765,” or if they follow a repetition pattern, such as “123123” or “123321.”
  • Passwords are marked leaked if the Password Monitoring feature can claim they have been present in a data leak.

 More generally, password managers often have a feature that checks your passwords against the Have I Been Pwned database of breaches and helps you change compromised passwords—1Password’s is called Watchtower, shown below.You can also search Have I Been Pwned directly. Don’t panic if your email address appears in numerous breaches because some of the theoretically compromised accounts may be defunct sites, trivial sites you used once 10 years ago, or duplicate password manager entries for a site whose password you already updated.

(Featured image by iStock.com/Prae_Studio)

Similar Posts

  • Back up for the Holidays

    The Holidays are here and I am sure many of your are busy making memories, thinking about others and capturing as many picture-perfect moments that you can. While you’re busy bustling around, are you taking the time to think about these memories? What would happen if you couldn’t go back and look up those moments? Perhaps now is the time to think about a gift for yourself and taking the time to ensure that all of the perfect moments you are capturing on video and in pictures are being safely stored on your computer.

    I know we talk about this all the time, but it’s surprising how many of us out there keep putting this important step of backing up to the side! The Holidays are the time with some of the best memories, and so many of us are capturing once in a lifetime moments. The last thing anyone wants is to have something happen to those photos. There are so many options for backing up your computer and your important files it can be a little overwhelming. There is iCloud, cloud-based storage solutions from countless companies, traditional external hard drives for back up and more! My preferred backup solutions are a combination of cloud backup and physical hard drives. It might seem a little redundant, but better to be safe than sorry when it comes to important documents and memories.

    For me, iCloud and an external hard drive are my preferred options for backing up. I use my iCloud account to keep my daily life in order, contacts and calendars most importantly. I also use iCloud for storing some of my most important memories and files, select baby photos of my kids and some important documents. The kind of things that should the worst case happen and I lost my computer or drives due to theft or fire I still have copies in the cloud. My preference for my backups is using Time Machine and my “**Seagate**”:http://www.smalldog.com/product/85305/seagate-backup-plus-slim-portable-drive-usb-3-0-2tb-blue hard drives. I keep a different drive for each of my computers and perform fairly regular backups, I am not perfect, so sometimes they are not as regular as I would like. But utilizing these drives allows me to ensure that I have entire backups of my files and data readily available. Before I started to use iCloud I would also have back ups drives of my Time Machine back up, yes, I was and am that paranoid about loosing photos of my kids. I still have a small 20gb drive that contains my oldest daughter’s first year of photos, even though I know all the photos are on my computer and backed up I still won’t delete that drive.

    In the last year we have seen a rise in alternative cloud storage and mobile storage solutions. Many companies like “*Seagate*”:http://www.smalldog.com/category/?mmfg%5B0%5D=Seagate and “*LaCie*”:http://www.smalldog.com/category/?mmfg%5B0%5D=LaCie have portable drives that allow users to access information wirelessly while on the go. This is a great solution for families with large media libraries for movies. The “**Lacie Fuel**”:http://www.smalldog.com/product/85520/lacie-fuel-wireless-battery-powered-mobile-hd-wifi-usb-3-0-1tb is great for just this. Have a long road trip? Load up the drive and the family can access the files from their iPhones or iPads quickly and easily without taking up storage on their devices. Another and perhaps more practical solution is the “**Seagate Personal Cloud**”:http://www.smalldog.com/wag900002041/mac-the-halls-save-20-on-seagate-personal-cloud-home-media-storage-3tb. This drive allows you to back up everything on your computer and access it from anywhere! No need to carry that back up drive along with you, and with tons of storage options little worry about not having enough space. So this holiday season remember, backing up is just as important as capturing those memories.

  • Hey Dora, Follow Orders!

    Last week we talked about how to activate and use dictation to write emails and documents but there is a lot more that you can do. I keep thinking about Scotty from Star Trek when he went back in time and was “**confronted with a Mac Plus**”:https://youtu.be/LkqiDu1BQXY?t=1m8s. He picked up the mouse as natural as can be and said “computer…”. That time is coming and Dictation Commands are already built into your operating system.

    Once you have dictation activated you can activate dictation commands by going to the Accessibility system preference.

    * Choose Accessibility from System Preferences.

    * Choose Dictation from the list on the left side of the Accessibility pane.

    * Click the Dictation Commands button. You can see a list of available commands in the Dictation Commands sheet.

    * A starting set of commands are enabled by default. Additional speakable items like “Open document” and “Click item” are available by enabling advanced commands using these next steps:

    * Select (check) the option to “Enable advanced commands” in the Dictation Commands sheet that appears.

    * Click Done.

    p{text-align: center;}. !http://blog.smalldog.com/images/4710.png!

    After you have enabled advanced commands, you can also create your own commands by clicking the Add Command (+) button. This lets you link a spoken phrase to an app, a menu item, a keyboard shortcut, or an Automator workflow.

    You have enabled Dictation Commands and now you can speak any of the items in this list to perform the related action. Press the Fn key twice, then say a command to make it happen, such as “Search Spotlight for the Cubs score” or “select sentence” or “new document”. Give it a try and pretty soon you will be just like Scotty and the Mac Plus.

    As a shortcut, you can speak the command “Show commands” to see a list of the commands you can say.

  • Macbooks and Macbook Air Upgraded

    Apple announced some changes to the 12-inch MacBook and 13-inch MacBook Air this week. Let’s talk about the MacBook Air first. Apple discontinued the 13-inch MacBook Air models that had 4GB of RAM and made them sport 8GB. There were no other changes to this model but the additional RAM comes at no additional cost as Apple doubled the RAM but kept the price the same at $999 for the 128GB SSD unit and $1299 for the 256GB SSD.

    With just this minor update to the MacBook Air we can speculate that perhaps this unit is on its way out within the next year. The MacBook Air does not have the Retina display nor does it support the latest in Intel mobile processors. On the other hand, it is Apple’s best selling laptop.

    The changes to the MacBook were more significant. They added a Rose Gold (er…pink) color which might actually be a nice option for some. More importantly, Apple went to the new sixth-generation dual-core Intel Core M processors which run at clock speeds up to 1.3 gigahertz, with Turbo Boost up to 3.1 gigahertz. The revamped notebooks also feature faster 1866 megahertz memory.

    This new processor yields increases in performance from 15-20% in initial testing. With the Intel HD Graphics 515, the new MacBook has about 25 percent faster graphics performance. Speed has also been enhance with new, faster PCIe-based flash storage.

    The lower power requirements and a slightly larger battery has also improved battery life, with the Apple claiming the new MacBook offers up to 10 hours of wireless surfing and up to 11 hours of movie watching.

    While some were expecting additional ports or an improved FaceTime camera, these features did not make the cut.

    We should have all the models in stock next week as well as some great deals on the newly discontinued models.