3 hours ago
With ParkMobile still circulating (21M+ rows, bcrypt hashes plus plates and addresses), it is a good reminder to treat any password you have reused as burned. Does everyone here rotate passwords after a new leak, or only when the service actually matters? I have started keeping a 'burn list' of breached domains and checking new leaks against it.
