On the one hand, if this really is a result of hackers logging in with a re-used password that was found in another companies breach then I don't know what Amazon is really suppose to do. On the other hand, telling the family that and saying "nothing we could have done" seems like a terribly in-sufficient response. I empathize with both parties here, though obviously more so with the family. Maybe Amazon should require 2FA for logging into Ring?