Originally Posted By: tfabris
Some of my old emails were password confirmation emails. So if they wanted to datamine the stuff they downloaded, they might have the passwords to some of my favorite user forums. So I changed those too. Everybody!!! DELETE ALL OLD EMAILS THAT CONTAIN PASSWORDS.

Shouldn't services not send you your actual password in an email?


These days I'm a big fan of Lastpass. I've gone through all my important sites and had Lastpass generate some very long, gibberish passwords that I could never ever remember. Then I have a single password for Lastpass that I've created using my own system, and I feel like I'm pretty secure. Steve Gibson of the Security Now podcast was 100% positive towards the service, and uses it himself now. He went into incredible detail about how secure it is. Find that episode here.

And no, I was not using Lastpass when my GMail account was hacked, and like everyone else here, I have no idea how it happened. I find it unlikely that all of us were phished or our passwords were broken, so I'm hoping this isn't a Google problem, but I'm not optimistic...
_________________________
Matt