A breach notice may involve passwords, payment details, contact information or data you no longer remember giving the service. A generic warning on social media is not enough to tell which records were affected. Start with the provider's official notice and your own account activity.
Turn the notice into a checklist
- Open the service directly, not through an unsolicited message. Confirm the incident notice, the affected data, the relevant dates and what the provider says it has already reset or revoked.
- If a password or sign-in token may be exposed, change that account's password to a unique one. Replace the same password anywhere you reused it, starting with email. Turn on MFA and review active sessions.
- If payment details were involved, contact the card issuer through its official channel, review charges and ask whether replacement or monitoring is appropriate. If identity data was exposed, use your country's official identity-theft guidance.
- Watch for follow-up messages that quote real details from the incident. A convincing breach-themed message can still be a separate phishing attempt.