I rarely post here but I had an account on infosec.exchange going back and I just got a notification that my password had been changed. The original password and the email address shouldn't have been guessable so... that's bad, I think?
Tropical Storm Jerry🌀 (@[email protected])

FYI - because of what I saw happening over on mastodon. Social and a few other instances, I am resetting all the password of infosec.exchange users that haven't logged in during the previous 3 months. There's a lot of password stuffing and whatnot going on and I don't want to contribute to the problem of spam/phishing on the fediverse, and this was the best option I could come up with. Each of the accounts whose password is reset will get an email, so if you are here wondering "wtf, dude?", that's why.

Infosec Exchange