In perspective 1.8 accounts breached isnt that much when you look at the possibility of total accounts being in the trillions.
I would say if you do not have atleast a capital lettet a lower case letter and a numbet in you password i would do so to protect valuable info.
Keep in mind a special character like # doesnt hurt either.
Posted from my iPhone/Mobile device
|