Alert icon Keyboard navigation enabled.
Alert icon TAB or Shift+TAB to navigate across. Down ↓ to open menu. ESC to close menu.
Alert icon Down ↓ to select section. Right → to activate. Up ↑ / Down ↓ / Tab to traverse all. ESC to exit.
BeyondTrust
Skip to content Use space or enter to skip.

What can we help you find today?

Instant Results
  • Website Results
  • Technical Documentation

Filter Options

Focus your search

Filtering by

Your recent searches:

Contact Us Chat with Sales Get Support
  • English
  • Deutsch
  • français
  • español
  • 한국어
  • português
  • Home
  • Resources
  • Blog
  • Yahoo what? current page
Link copied

Yahoo what?

Oct 20, 2017
Author:
James Maude Headshot 2024
James Maude
Field Chief Technology Officer
Blog banner default
Yahoo what?
James Maude Headshot 2024
James Maude
Field Chief Technology Officer

Following the Yahoo breach many users are concerned about their online safety and what to do next. As with all data breaches although a lot of the issues are beyond the control of the user there are some straightforward measures that they can take to be as safe as possible online.

Passwords

Passwords should be long, strong and unique, worryingly the most common passwords in 2016 are: “123456” , ”password” and “12345678”.

If you are using a simple or common password you are at risk with or without a breach. Attackers maintain lists of common passwords and simply cycle through them to gain access to accounts. If you struggle to remember long complex passwords try using more memorable pass phrases like:

Best-holiday-dolphin13

It is easier for your brain to remember so you can create a much longer password that is harder for an attacker to brute force. You should also not reuse passwords across different websites especially those that contain sensitive information such as email and banking websites.

If you really want to ensure strong unique passwords it is worth considering using a password manager app. These apps can generate and store unique passwords for every site you use and store it in a secure “vault” that you unlock with a fingerprint or one master password.

Multifactor authentication

Almost all the major platforms offer the option to enable multifactor authentication. In simple terms this means that when you log in using a new device they send a code to your phone to verify it is really you. In the event your password is stolen the attacker is unable to login without this code. This is a really quick win in terms of online safety.

Monitor yourself

Users should be aware of their digital footprint; many users are often unaware of quiet how much personal information they share online. Look at privacy settings on social media and Google yourself to see what can be found.

haveibeenpwned.com is a website which can notify users if their details have appeared in any past or inevitably future data breaches. Think of it as credit monitoring for your online identity.

Be suspicious

Attackers often use events in the news such as this breach as a catalyst to trick users by sending out spam emails pretending to be associated with the breached company. These emails often have malware attachments they want the user to open or they are trying to get the user to fill in valuable personal details and passwords. If in doubt go directly to the website and contact the company directly to verify if any contact is genuine. Avoid clicking links or opening attached files.

Taking these measures should help you stay ahead of the attackers as much as possible by restricting their ability to reuse and abuse stolen information.

Latest Posts
  • The Most Common & Most Dangerous Types of Shadow IT
    Jun 5, 2026 The Most Common & Most Dangerous Types of Shadow IT
    Blog
    19m
  • 14 Password Management Best Practices
    May 28, 2026 14 Password Management Best Practices
    Blog
    12m
  • A Security Researcher’s Guide to Understanding Copilot Studio AI Agents
    May 26, 2026 A Security Researcher’s Guide to Understanding Copilot Studio AI Agents
    Blog
    3m
  • How to Secure Cloud-Native Infrastructure at Scale and Speed: A Conversation with Madhu Adireddi
    May 21, 2026 How to Secure Cloud-Native Infrastructure at Scale and Speed: A Conversation with Madhu Adireddi
    Blog
    5m
  • Cybersecurity as a Boardroom Priority for Major African TelCos
    May 12, 2026 Cybersecurity as a Boardroom Priority for Major African TelCos
    Blog
    8m
Related
  • 12 Strategies for Getting Your Password Game in Check
    Oct 9, 2017 12 Strategies for Getting Your Password Game in Check
    Blog
    1m
  • Operational Technology (OT) Cybersecurity:  What Risks should be Prioritized?
    Jan 25, 2022 Operational Technology (OT) Cybersecurity: What Risks should be Prioritized?
    Blog
    1m
Share this Article
  • Link
Stay up to Date
Get the latest news, ideas, and tactics from BeyondTrust. You may unsubscribe at any time.

Keep up with BeyondTrust

Customer Support Get Started
  • LinkedIn
  • X
  • Facebook
  • Instagram
  • Add BeyondTrust as a preferred source on Google
  • Privacy
  • Security
  • Manage Cookies
  • Do Not Sell My Data
  • WEEE Compliance

Copyright © 2003 — 2026 BeyondTrust Corporation. All rights reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust Corporation is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.

Prefers reduced motion setting detected. Animations will now be reduced as a result.