Dunkin Donuts loyalty program breached via a credential stuffing attack.
https://go.newsfusion.com//security/item/1338925
yet another reminder, do not re-use passwords between systems
@katharsys2012 - if you've re-used a password, and they guessed it on the first or second time, there might not be a notification incoming.
@katharsys2012 - ah, missed that part - need more coffee
STAT
@0x56 < ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️ ☕️
@0x56 Looks like they invalidated logins, and forcing a password reset.
**picks random words for phrase and then uses fingerprint for login**
Still, nothing in the email notifications about the breech. That's kind of fscked up.