2025-10-21 10:36:08 CEST

Ready To Prepare on Nostr: ------------------------------------------------- Privacy and Other Related Stuff ...

-------------------------------------------------
Privacy and Other Related Stuff
-------------------------------------------------

Keep private.
1️⃣Use email alias forever on each service
2️⃣Use 2FA - not sms - whenever possible
3️⃣Delete all services that you dont use
4️⃣Encrypt everything.

No busques la perfección.
Una acción cada vez y mejorar cada día.

-------------------------------
End of transmission
-------------------------------
Update on the attack:

⚠️ IT’S WORSE THAN I THOUGHT! ⚠️

What I believe is happening is someone is using the public Lightning addresses from Nostr profiles to doxx everyone’s registered email address on Alby.

By simply entering a valid Alby address, the login page LEAKS the corresponding email address.

This means that the purpose of the attack is not so much to breach your Alby account, it’s to collect emails of Alby users for future phishing attacks.