Like the title says, I’ve got yesterday an email with a code to access my Microsoft account and that made me suspicious because I wasn’t trying to login to my account. When I looked at the login attempts I saw that someone else was trying to access my account, I changed my password, activated TFA. Thinking of going through and buying a physical key like yubico to further secure my account. Any tips are appreciated.

  • Zorcron
    link
    fedilink
    English
    arrow-up
    4
    ·
    10 months ago

    What kind of randomly generated password did you have that was crackable? I usually use 30 characters completely random string. If that’s crackable, maybe I need to rethink things.

    • Thrife@feddit.de
      link
      fedilink
      arrow-up
      2
      arrow-down
      1
      ·
      10 months ago

      Stupidly just 12 random characters. I was too naive and hoped that’ll be it.