"This password has appeared in a data leak" notice on iPhone

Is there any way to find out what website the data leak was from when getting this on my iphone settings?


I want to find the culprit for me now having to change my password used on 59 other sites



[Re-Titled by Moderator]

iPhone 11

Posted on Sep 29, 2020 9:22 AM

Reply
Question marked as Top-ranking reply

Posted on Mar 28, 2021 7:32 AM

No, the problem is not with Apple. Apple is simply the messenger, telling you that a password (or passwords) that you have used have been found in published lists of passwords that have been stolen from various online sites. There are databases that are built by cybersecurity companies going to the dark web and seeing what stolen information is offered for sale by various criminal enterprises. Google offers a similar feature in Chrome, and the site https://haveibeenpwned.com can also tell you if a password that you use has been found in login information stolen from other sites.


If you want to learn about the hundreds of sites that have been hacked (many of which you probably use) Brian Krebs reports on the latest ones: https://krebsonsecurity.com. Some of the largest include Equifax, Marriott Hotels, the US Government’s personnel management agency, and many chain restaurants. And the most recent is almost all sites worldwide that use Microsoft Exchange.

133 replies

Sep 29, 2020 10:28 AM in response to Aqellezra

You will never find the culprit.

Look at the news, many websites and companies are breached.

Many of them don't follow best practices of security by salting and hashing passwords.

It is estimated that 15 billion passwords are available to buy on the dark web.

Your best bet is to use a password generator to create a unique password for each and every website.

iOS has one built in, keychain:

https://support.apple.com/guide/iphone/automatically-fill-in-strong-passwords-iphf9219d8c9/ios


You can also use a service such as 1password or lastpass.

Nov 1, 2020 3:26 AM in response to MrHoffman

Interestingly, iOS showed me a breach for an account that other websites do not detect as a being hacked.


I checked with avast, f-secure, and haveibeenpwned. None of them show that particular login account for a 3rd party service as being breached, but iOS. I guess Apple is deeper in the darknet than other, so to speak 😉.


I really appreciate this new service from Apple. Well done!

Nov 7, 2020 8:55 PM in response to Aqellezra

I came here to look for an answer as this is a very serious issue. And luckily, I found my answer.

But if I still had questions regarding this thread, I wouldn’t dare ask. A couple of higher level ladies/gentlemen gave informative, teaching answers with references and I thank you.

So I am assuming this is the result of the latest security updates. Thank you again.

Nov 9, 2020 11:07 PM in response to Lawrence Finch

Have you got any basis for that assertion, that apple has access to lists other websites don't ? that Apple's list is larger ? Or are you just guessing. If you are right it is astonishingly anti-social of Apple not to share their lists with havibeenpwned - they're saying you can only find out if your password is compromised by buying one of their products.


I changed one of my supposedly compromised passwords to something unique and it still said it had appeared in a data leak. My guess is it is a bug in their system.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

"This password has appeared in a data leak" notice on iPhone

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.