Why Reusing Passwords Is Dangerous: The JustDropped Example

December 15, 2025

JustDropped exposes passwords in “Forgot Password” emails, highlighting the dangers of password reuse and insecure storage practices.

Why Reusing Passwords Is Dangerous: The JustDropped Example

When you create an account on a website, do you REALLY think your password is encrypted??

This is exactly why you should never reuse the same password across different platforms / accounts.

JustDropped - a huge marketplace of expired domains w/ more than 500,000 monthly visitors according to Hypestat will LITERALLY email you your original username and password if you click “Forgot Password” :D

Related posts
All posts
Google.com Scam Sent via Gmail API - DMARC Passed, No Account Compromise

A scam email sent from @google.com passed SPF, DKIM, and DMARC without a compromised account. Here’s what it reveals about modern email threats.

Google.com Scam Sent via Gmail API - DMARC Passed, No Account Compromise
When Vendors Control Your DNS: A Hidden DMARC Security Risk

A real-world example of how third-party DNS control can silently block DMARC visibility, redirect domain telemetry, and introduce serious email security and data exposure risks.

When Vendors Control Your DNS: A Hidden DMARC Security Risk
2.3 million emails. One exposed API key. $10K bill.

How DMARC forensics exposed an API key leak, 2.3M unauthorized emails, and a $10K bill.

2.3 million emails. One exposed API key. $10K bill.