Why are suddenly several accounts hacked?

Mu
8

I'm totally confused right now. This morning my Netflix account was hacked and the mail changed, thanks to customer service I have my account back with new mail and PW. Now I just get an email from Ebay that they have reset my PW for suspected foreign access. I simply deleted the account now. But how can that be? I never pass on PW, has never hacked anywhere and today twice. I'm afraid it will hit my bank account next time.

Br

If you use the same email and probably the same password for multiple portals, your credentials (which work on Netflix, for example) will often be checked on other platforms like Ebay. Maybe your email account has been hacked first, causing the hacker to get more passwords.

Mu

Thanks, yes, that makes sense. Use a mail for almost everything and that the PW were similar, can be good. I think my mail account is hopefully safe because I had a completely different PW

We

Change all passwords everywhere. Use unique "good passwords" everywhere, start with your email account!

Mu

Thanks. Yes, I'm already changing everything

Tu

N Password Manager let password creation and management.

ho

This can have the following reasons, for example:

Same PW on different accounts - if someone chops the XYZ-forum.de and then your password can extract from the user data, the one with the coveted services will match - eg Netflix, eBay, PayPal, Amazon, … Therefore, you should never the same PW on different accounts use except a garbage-PW on various garbage accounts

Trojans on the computer - such a malware can't only abuse your PC for criminal activity but also steal cookies and stored PW from your browser or record all inputs with a keylogger. - How ineffective your virus scanner is I show here: https://hackenlernen.com/blog.php?t=python_tutorial_reverse_shell

Chopped Email - If the PW has been hacked to its email, then you can have the password reset on each associated account and then change it with a link sent to your email. Even so, one gets very easy on various accounts.
etc.

Therefore, you should learn from it and deal with IT security before the next time your credit card is misused or your bank account is emptied!

Mu

It would not have needed the last paragraph, I'm not stupid. Think something like that can happen almost every time. But thank you.

ho

This has nothing to do with stupid but mostly with disinterest! Almost every day I deal with companies and people who fall for (partly) some basics with easy-to-understand tricks…

But who is looking at email headers or link targets so exactly? Who distrusts their own virus scanner? Who does not trust a certified and excellent shop? Who suspects SSL certificates if there's already "Website is safe" in the browser? Who distrusts identity cards?

From identity cards to web pages, emails and security certificates to your own home Wi-Fi, everything can easily be faked. Although most of these fakes are quite easy to recognize but you would have to know where to look.