I have just dealt with a client, first thing this morning who has had over £1200 spent on their Facebook Ad Account, hopefully they can recoup this money, but this just illustrates how vulnerable businesses (and individuals) can be.
What had happened, is that the hacker had gained access to their Facebook account, then from there added a post pointing to a url, and boosted it for £1200 per day! They had done this at 3am last night and had already spent this amount when the client logged in this morning.
What is VITALLY important is not only keeping your passwords safe, but to use a different password for each site, as well as a strong one and then to add a 2 factor authentification where possible to stop this kind of things happening, the use of Google Password Manager is ideal and this linked with the 2FA will help stop thieves accessing your accounts and keep you safe.
Thanks for reading.