so i received a SPAM email , but they know my password ?!?

but the password was correct ?
Because they purchased a list of user data (including passwords which is what they use to get your attention and think that they are telling the truth unless you already know it's all garbage) from the dark web and are just firing out emails in the hope that someone will bite and send them the amount they demanded.

If you've already changed passwords for sites you use that have been compromised and user data has been taken then you don't have to worry as that is the data they have, but I would suggest going through haveibeenpawnd (if that is the correct name) to see if there are any other sites that have been compromised that you haven't changed your password at yet.
 
Your password in an email that someone sent. Get your system formatted and re-install windows as soon as possible. It takes less than an hour to do. Don't be lazy and do not reply to the email.

Change your passwords as well to all your sites with that password.
 
im slowly longing into my accounts and changing my passwords, and i have just come across one that i cant log in, as its been deactivated..
 
The other thing is - don't reply to that email. Replying to it will confirm that your email address is still live / valid.

A few mentions on here about password managers. The haveibeenpwned site mentions 1Password which I'm guessing is an affiliate, but I'm open for suggestions please :-) How is it implemented? Is it browser-level or OS-level? What about routers, NAS, Raspberry Pi and so on?
 
Your password in an email that someone sent. Get your system formatted and re-install windows as soon as possible. It takes less than an hour to do. Don't be lazy and do not reply to the email.

Change your passwords as well to all your sites with that password.
A format and reinstall is completely unnecessary in this instance as there isn't any malware or key loggers on the OPs system because as I've already mentioned these people buy data off the dark web and then use the password as a means to make the person think that their claims are legitimate when they aren't.
 
A format and reinstall is completely unnecessary in this instance as there isn't any malware or key loggers on the OPs system because as I've already mentioned these people buy data off the dark web and then use the password as a means to make the person think that their claims are legitimate when they aren't.

is it? Alright then, even when the ops password has been email to them? Sure.
 
hes just emailed me again
:/

It'll keep on happening. Creating several new email accounts will help as you'll only need to delete one if that one gets leaked. Use separate ones not linked with shops, forums, etc for sensitive sites such as banking, paypal, etc. Have one email specifically for sites you would likely use once, or request account deleted from the site you register to when finished.

Effort, yes, but safer.
 
Back
Top Bottom