Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I got an email from Bitbucket earlier today warning me about unusual behavior on my account as a result of reused credentials. Is it an attack across several version-control services?


I got the same mail, seems like a coordinated attack. Luckily I had 2FA enabled, I'd recommend everyone to do that as well as it protects your account in these cases.

Bitbucket provides an audit log and a list of recent login sessions where you can see if your account has been accessed and if anything destructive was done to it. Github has a similar feature I think.


I got a note over the weekend from Steam (steamguard) indicating that someone attempted to log into my account. They're hitting everything.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: