PSA: Make sure to change your passwords after an event like cloudbleed

ReshiKillim·3/9/2017, 7:22:27 AM·9 votes·5,148 views

Got onto the PBE after a while without playing and found that my PBE account's summoner name had changed. And it also had a chat restriction for toxicity.

MAKE SURE YOU CHANGE YOUR PASSWORDS, PEOPLE.

33 Comments

Martensitic3/9/2017, 8:35:34 AM6 votes

Or even better:

  • Don't re-use your passwords.

  • Don't use the same password for multiple services.

One of the reasons why database breaches like cloudbleed are so dangerous, is because people are surprisingly dumb when it comes to their IT security, and use the samepassword for facebook, gmail, league, wow, instagram, snapchat, whatsapp,...and that new webservice which just happens to get hacked.

Guess what the first thing someone who gets his hands on one of the lists does after hashbreaking passwords? HE TRIES THE EMAIL-PW COMBINATION ON EVERY OTHER WEBSERVICE.

And that isn't done by hand folks. There are scripts that do that. Automatically. Millions of passwords in a few minutes.

So: Start using different passwords, for different services!!

And if you have trouble remembering passwords:


#--------------------- GET A GODAMN PASSWORD MANAGER!! ---------------------


And learn how to use it. There are multiple open source options to be had in that area, that do not cost any money, offer great functionality, are super easy to set up and work on almost every operating system (including mobile ones, however, if you set up your pw manager on a phone, you are begging for security problem.)

All you have to do is remember ONE single password (which should actually not be a password, but a really really long and complicated pass-phrase) to unlock the PW manager.

And if you cannot remember one strong passphrase, well,...

https://www.youtube.com/watch?v=lOfZLb33uCg

ProtestantCaesar3/9/2017, 3:21:51 PM2 votes

What's cloudbleed?

ComeVsMe4/3/2017, 3:10:22 PM1 votes

good