Hacker News new | ask | show | jobs
by jackvalentine 3348 days ago
I got caught by another Skype issue - merged my long-time Skype account with my MS account.

Old skype account - kinda bad password.

MS account - great password, 2FA.

Then I got alerts that someone in China had logged in to my MS account. I couldn't figure out how they'd done this until...

I figured out they'd signed in to skype, using my old skype username and old skype password that were still valid for some unknown reason after merging it in to my far more secure MS account.

1 comments

It wasn't manually hacked, there's someone out there running a program to brute force known Skype usernames & spreading spam & confirming more Skype usernames. Alphanumeric password upto 9digits are not safe absolutely.
Well of course