87

Did I get that unlucky and get assigned a bad IP?

Its mobile data btw.

And I don't wanna point fingers and blame Proton, but like... c'mon,

First of all, its a real IP address,

Second, even if it were a VPN, so what, your company literally runs a VPN lol, kinda ironic.

And its also a paid account, and I rarely (almost never) send outgoing emails.

But again, this is just a small annoyance, I generated a new password in Keepass and its seems fixed.

you are viewing a single comment's thread
view the rest of the comments
[-] sylver_dragon@lemmy.world 14 points 3 days ago

The alert seems to indicate a compromised account, this can mean a lot more than "a bad IP". Your account may have shown up in a "dump" and they took action to ensure your safety. Have you tried putting your email address into HaveIBeenPwned. While the normal recommendation would be to not put your email address in a random web form, this site is actually run by a well known security researcher and just lets you know if you have shown up in such a dump in the past.

Another possibility would be that they have seen a major change in your IP geolocation in a short time. This is referred to as "improbable travel" and it's something which many security departments take action on. If you login from an IP address which is associated with Paris, France and then an hour later are logging in from Dubai, UAE, this is going to be flagged. Sure, you might travel between those two locations, but you ain't doing it in an hour. So, your account gets flagged as possibly compromised.

even if it were a VPN, so what, your company literally runs a VPN

Right, but they may not know that you are using another VPN. So, continuing the issue above of "improbably travel". If you are on Proton's VPN, they know all of their exit IP address and likely take them into account. But, if you are using a different company's VPN, Proton likely doesn't know all of that company's exit IP addresses and so can't account for them. Consider the situation from their perspective:

  1. You are using some other VPN and they force you to do a password reset.
  • Outcome - you're a bit annoyed, but ultimately your mail account is safe.
  1. Some attacker has your password and tried to use it to access your mailbox, but Proton stopped the login and forced a password reset.
  • Outcome - you are a bit annoyed, but your mail account is safe.
  1. Some attacker has your password and tried to use it to access your mailbox, and Proton let them in.
  • Outcome - You get wrecked and are really unhappy.

No matter what, Proton is going to lose out a bit to you being unhappy. However, if they force the password reset, the worst case is you being slightly annoyed about a password reset. By not taking action, they risk your account being fully compromised, which can be very, very bad for you. So, they are likely to be more proactive in forcing a password reset than you might like. This will be especially true if you do not have any sort of two-factor authentication setup. If the whole game is lost by one password being lost, any whiff of that password being compromised will result in a password reset.

Ultimately, it is am annoyance but one which is actually positive for you. They take your email security seriously enough that, when their system detected something, they took action to keep you safe.

[-] DeathByBigSad@sh.itjust.works 4 points 3 days ago
  1. You are using some other VPN and they force you to do a password reset.
  • Outcome - you're a bit annoyed, but ultimately your mail account is safe.

Yeah, make sense, this is exactly what mildlyinfuriating is lol, not something that ruins your life, just a slight annoyance that might or might not be anyone's fault, just unfortunate circumstances of the world (the unfortunate circumstance of the fact that fraudsters and hackers exist)

[-] sylver_dragon@lemmy.world 3 points 3 days ago

Ya, I just find that the mildly infuriating things can be less so by knowing why they are happening. As someone who regularly resets user passwords professionally (not for Proton), I figured I could give some insight into why this happens.

this post was submitted on 22 Aug 2025
87 points (100.0% liked)

Mildly Infuriating

41702 readers
299 users here now

Home to all things "Mildly Infuriating" Not infuriating, not enraging. Mildly Infuriating. All posts should reflect that.

I want my day mildly ruined, not completely ruined. Please remember to refrain from reposting old content. If you post a post from reddit it is good practice to include a link and credit the OP. I'm not about stealing content!

It's just good to get something in this website for casual viewing whilst refreshing original content is added overtime.


Rules:

1. Be Respectful


Refrain from using harmful language pertaining to a protected characteristic: e.g. race, gender, sexuality, disability or religion.

Refrain from being argumentative when responding or commenting to posts/replies. Personal attacks are not welcome here.

...


2. No Illegal Content


Content that violates the law. Any post/comment found to be in breach of common law will be removed and given to the authorities if required.

That means: -No promoting violence/threats against any individuals

-No CSA content or Revenge Porn

-No sharing private/personal information (Doxxing)

...


3. No Spam


Posting the same post, no matter the intent is against the rules.

-If you have posted content, please refrain from re-posting said content within this community.

-Do not spam posts with intent to harass, annoy, bully, advertise, scam or harm this community.

-No posting Scams/Advertisements/Phishing Links/IP Grabbers

-No Bots, Bots will be banned from the community.

...


4. No Porn/ExplicitContent


-Do not post explicit content. Lemmy.World is not the instance for NSFW content.

-Do not post Gore or Shock Content.

...


5. No Enciting Harassment,Brigading, Doxxing or Witch Hunts


-Do not Brigade other Communities

-No calls to action against other communities/users within Lemmy or outside of Lemmy.

-No Witch Hunts against users/communities.

-No content that harasses members within or outside of the community.

...


6. NSFW should be behind NSFW tags.


-Content that is NSFW should be behind NSFW tags.

-Content that might be distressing should be kept behind NSFW tags.

...


7. Content should match the theme of this community.


-Content should be Mildly infuriating.

-The Community !actuallyinfuriating has been born so that's where you should post the big stuff.

...


8. Reposting of Reddit content is permitted, try to credit the OC.


-Please consider crediting the OC when reposting content. A name of the user or a link to the original post is sufficient.

...

...


Also check out:

Partnered Communities:

1.Lemmy Review

2.Lemmy Be Wholesome

3.Lemmy Shitpost

4.No Stupid Questions

5.You Should Know

6.Credible Defense


Reach out to LillianVS for inclusion on the sidebar.

All communities included on the sidebar are to be made in compliance with the instance rules.

founded 2 years ago
MODERATORS