Related Posts
Additional Posts in Cyber Security Bowl
HMU for referrals
Tell me it’s not true.

New to Fishbowl?
Download the Fishbowl app to
unlock all discussions on Fishbowl.
unlock all discussions on Fishbowl.
HMU for referrals
Tell me it’s not true.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.
Download the Fishbowl app to unlock all discussions on Fishbowl.
Copy and paste embed code on your site

Scan your QR code to download
Fishbowl app on your mobile

Mentor
Not everyone hashes all passwords and some companies/bad actors will even sell your data. Every time you reuse a password the chances of something like that happening becomes higher.
If a fly lands in your pop, do you take it out and keep drinking?
You mentioned reusing the password.. that implies you’d be using it for personal accounts as well, which are also susceptible to attacks and generally have less protections.. now a threat actor has access to all your accounts. And then there’s the problem of browser-based attacks (your corporate and personal passwords are probably stored there), brute force attacks if your password isn’t long or complex enough, LSASS dumps (Mimikatz), and a whole ton of other things that might lead to your corporate or personal accounts getting compromised.
Once they have your password they can text you about this amazing job offer they have for you after perusing your LinkedIn account for your phone number and somehow coerce you into enrolling an extra MFA device for them so they can just use your corporate account willy-nilly.