logoalt Hacker News

keyletoday at 5:03 AM4 repliesview on HN

At this stage just expect that every accounts will get leaked or rooted, it's a matter of when, not if...

Use varying email `plus addressing` ([email protected]), varying passwords or passkey and 2FA on anything remotely important (use of your identity, not just financials).


Replies

Cider9986today at 5:56 AM

I recommend people use proper email aliasing, not plus addressing. Duckduckgo makes a free one that's can integrate into Bitwarden, if you have iCloud+ Apple's($0.99/month) hide my email is good. Addy.io and SimpleLogin are the best and allow PGP encryption to prevent another party having access to your emails, but they are paid for full features.

> Organizations like the IAB require that advertisers normalize email addresses so that they can be correlated and tracked, regardless of users' privacy wishes.

https://www.privacyguides.org/en/email-aliasing/#over-plus-a...

IshKebabtoday at 6:45 AM

Plus addressing doesn't work well unfortunately - lots of poorly written websites will reject it.

show 1 reply
andrepdtoday at 5:53 AM

The + trick is useless to protect you, obviously. Instead, use a a service like simplelogin to create unique emails for every place you sign in.

show 1 reply