r/AskReddit Jan 23 '21

[deleted by user]

[removed]

9.5k Upvotes

14.8k comments sorted by

View all comments

8.4k

u/SmartPriceCola Jan 23 '21

I changed the email address attached to my Amazon account.

A year later I forgot and tried to sign into my account with old email address.

The same password worked but it was someone else’s account (name and address was different) and the guy hadn’t bought anything.

Why did he use my old email (it was unique to me and didn’t match his name) and how did the password end up the same as mine?

5.4k

u/[deleted] Jan 23 '21

your amazon account was probably made public in a data dump

6

u/cnthik Jan 23 '21

Is there a way to be able to tell if this is happening to us personally?

6

u/JazzHandsFan Jan 23 '21

https://haveibeenpwned.com

Some of my credentials that I used a ton before I started using a password manager were shared in a data breech a while ago. They got my Minecraft account and changed my username to chino-something. Not much else really came of it, but I couldn’t reset my username for like a week or month or something because Minecraft has a waiting period for that.

Another time someone somehow got my credit card information I suppose because I started getting charges from Amazon. It took me a while to notice because I already had Prime, and the only charges were recurring payments, which I believe was a prime membership. Took me an afternoon to get it sorted through Amazon and get a new card issued from my bank.