If you own an iPhone or iPad running on iOS 14 or above, you might have already seen below alert as part cybersecurity feature across both devices and Macs.
“This password has appeared in a data leak, putting this account at high risk of compromise. You should change your password immediately”
This “Security Recommendations” feature in Apple monitors passwords to provide iOS users with additional warning of any data leaks and recommend users to update their passwords before a data breach occurs, reducing the risk of identity theft or fraud.
How can attacker use leaked passwords?
Cybercriminals monitor the data leaks actively to build an easy attack path into an organization. Leveraging any sensitive data in data leaks, attacker can then plan a larger attack on organization, for e.g., use employees password to break into the company network; commit identity theft or fraud by selling credit card or bank data, personally identifiable information (PII) to further cybercriminals driven by financial motive
To enable it:
Open Settings > Passwords > Security Recommendations (you will be prompted to enter your passcode for access).
Password Security Recommendations
Do not reuse passwords across different sites
Use strong password cannot be guessed easily
Change your password frequently
Monitor any login from unknown locations
Use Multi-factor authentication (MFA) for your accounts
Comments