They’re blaming customers for not having good cybersecurity practices instead of themselves for not having good cybersecurity practices.

  • @pearsaltchocolatebar
    link
    149 months ago

    23andMe can have all of the security practices they want, but they can’t stop users from reusing passwords from other sites.

    • @doppelgangmember@lemmy.world
      link
      fedilink
      179 months ago

      Uhh yeah you can…

      Mandatory 2FA with phone and password retry count. If it’s targeted using breach data of email/passwords then the 2FA should still stop the majority…

      • @brbposting@sh.itjust.works
        link
        fedilink
        29 months ago

        Shouldn’t service providers be hashing the plaintext passwords that show up in dark web leaks to see if matching users reused those passwords?

        • folkrav
          link
          fedilink
          49 months ago

          Wouldn’t really be of any use if they’re doing things right and salt their hashes