• very_well_lost@lemmy.world
    link
    fedilink
    English
    arrow-up
    25
    ·
    5 days ago

    My somewhat educated conspiracy theory is that companies do this when they know their user data has been stolen, but they don’t want to go public with the breach.

    Just quietly invalidate everyone’s password so everyone is forced to update them, making the stolen data useless.