Remix.run Logo
Show HN: 1Pwned(github.com)
3 points by peteski22 18 hours ago | 3 comments

Check all your 1Password logins against Have I Been Pwned's API to figure out which one might be Pwned.

After the Synthient Stealer Log Threat Data Breach (https://synthient.com/blog/the-stealer-log-ecosystem) I realised: you can be in a vulnerable spot if you happen to have a different password for every website, BUT the same email address.

Hopefully this is useful to others who want to be able to find out 'which' login was likely Pwned when they get that alert.

treetalker 10 hours ago | parent [-]

How does this information differ from, and provide more value than, 1Password's built-in Watchtower functionality?

peteski22 9 hours ago | parent [-]

TBH now that I’ve looked into it … I think it doesn’t really seem different at the moment. I don’t know how I missed this (it was late last night when I made the tool)

peteski22 6 hours ago | parent [-]

What's weird is that the Watchtowwer in the 1Password desktop app didn't show this, but the mobile app does show 'Vulernable Passwords' which it uses the Have I Been Pwned breach data for. 0_o