April 12, 2023, 4:55 p.m. | Nicholas DeWald

DEV Community dev.to

We’ve all witnessed some pretty big password leaks. 6.4m unsalted passwords leaked from LinkedIn, then 500m passwords leaked from Yahoo. This is truly scary, even if you haven’t been using your Yahoo account. To see why let us go back to when I almost fell victim to a credential stuffing attack from China.


‍First of all, “credential stuffing” is a fancy name for password reuse. All it takes is somebody with very intermediate computer security knowledge, looking up …

account attack back big china computer computer security credential credential stuffing credential stuffing attack hacked knowledge leaked leaks linkedin name password passwordless password reuse passwords prc prove reuse scary security steam victim yahoo

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Information Security Specialist, Sr. (Container Hardening)

@ Rackner | San Antonio, TX

Principal Security Researcher (Advanced Threat Prevention)

@ Palo Alto Networks | Santa Clara, CA, United States

EWT Infosec | IAM Technical Security Consultant - Manager

@ KPMG India | Bengaluru, Karnataka, India

Security Engineering Operations Manager

@ Gusto | San Francisco, CA; Denver, CO; Remote

Network Threat Detection Engineer

@ Meta | Denver, CO | Reston, VA | Menlo Park, CA | Washington, DC