Just received a "suspicious activity" password reset prompt email from PayPal.
I went to PP manually rather than clicking the link the email (on phishing suspicion). Email was legit; it prompted me to change password immediately.
So, I fired up Bitwarden to generate a new password with my default settings.
Nope. Needed to adjust down, because PayPal STILL has a 20-character limit on passwords! 🤬
SERIOUSLY, PayPal?!?!
At least they support 2FA, but get with the program, people.
#cososec