Monster.com Reports Theft of User Data
help.monster.com
help.monster.com
I wonder how Monster is going to verify that the person logging in and changing the password is actually the user who owned the account and not the thief.
I guess they could hope that the user's email hasn't been compromised and go through an email verification to change the password.
Crucial details missing: how many (all?) users affected? When did the breach occur and how long did it take them to notice? How did they notice? What is this crap about "continually monitoring" the internet when they can't even secure their own servers?