Despite it not being present in any significant data breaches, some asshole has managed to get access to one of my emails. First they tried the good ol' "I have recorded videos of you watching porn, send me $400 in Bitcoin or I show them to everyone in your contact book" which I didn't fall for, but they did show they had my actual password, so I changed that immediately.
Then they began using those credentials to try and break into my public Facebook account that I'm friends with my family on. Bad news. I figured they'd probably try to post and message scam or phishing links of some sort. Got into a brief password-changing battle that culminated in me activating 2FA for both Facebook and that email account, which seemed to get rid of the bastard at last.
Then this morning, after getting all my devices set up with that email again, I get an email notification that my old, disused Instagram vent account that I haven't touched in 3 years suddenly received a new login from Vietnam, of all places. Because it used that email and password. So I had to go and change the password on that and now I have to sit and baby it to monitor for any new suspicious logins while I hunt for the way to delete Instagram accounts, since I don't even need it anymore. And I'm reasonably concerned about the hacker trying these old credentials on other websites that I've forgotten about which might not be kind enough to email me about new logins...
So that's how my new year is starting off. What about y'all?