Boots yanks loyalty card payouts after 150K accounts get stuffed

The UK pharmacy chain says it wasn’t hacked, its systems are fine. It’s all the password reusers mucking things up again!

KeySteal could allow someone to steal your Apple Keychain passwords

The researcher says it works without root or administrator privileges and without password prompts. But he’s not revealing how it works to Apple because there’s no money for him in its invite-only/iOS-only bounties.

Could this be the end of password re-use?

It’s password security’s Achilles heel: too many people make life easy for cybercriminals by re-using the same ones over and over. But what if there were a way for websites to compare notes on whether a password (or similar password) has been set by a user elsewhere?