Free tools Windows power users keep installed
One-click scans. No signup required.
Dell required Dell.com customers to reset their passwords after detecting an attempted unauthorized extraction of customer information on November 9, 2018. Dell said the information at risk included names, email addresses and hashed passwords, but its investigation found no conclusive evidence that any information was extracted. The reset was a precaution—not confirmation that customer passwords had been stolen.
What happened in November 2018?
Dell announced the incident on November 28, 2018. The company said it had detected and disrupted unauthorized activity on November 9 that was attempting to extract customer information from Dell.com. Dell described its response in a press release hosted by the U.S. Securities and Exchange Commission and furnished the announcement in an SEC Form 8-K.
Dell’s release said: “Though it is possible some of this information was removed from Dell’s network, our investigations found no conclusive evidence that any was extracted.” That wording leaves uncertainty: Dell did not confirm that data was taken, but it also did not establish that none left its network.
What information was involved?
According to Dell, the activity targeted customer names, email addresses and hashed passwords. Dell said it had hashed customers’ passwords, but its announcement did not identify the hashing method. Hashing alone is not enough to conclude that passwords were harmless or impossible to recover.
Recommended Free Tools
#1 Best Overall
- ✅ PROTECT ONLINE ACCOUNTS – A password manager, two-factor security key, and secure communication token in one, OnlyKey can keep your accounts safe even if your computer or a website is compromised. OnlyKey is open source, verified, and trustworthy.
- ✅ UNIVERSALLY SUPPORTED – Works with all websites including Twitter, Facebook, GitHub, and Google. Onlykey supports multiple methods of two-factor authentication including FIDO2 / U2F, Yubico OTP, TOTP, Challenge-response.
- ✅ PORTABLE PROTECTION – Extremely durable, waterproof, and tamper resistant design allows you to take your OnlyKey with you everywhere.
- ✅ PIN PROTECTED – The PIN used to unlock OnlyKey is entered directly on it. This means that if this device is stolen, data remains secure, after 10 failed attempts to unlock all data is securely erased.
- ✅ EASY LOG IN –No need to remember multiple passwords because by plugging OnlyKey to your computer, it automatically inputs your username and password. It works with Windows, Mac OS, Linux, or Chromebook, just press a button to login securely!
Dell said credit-card and other sensitive customer information were not targeted, and that the incident did not affect Dell products or services. These are the company’s statements about the incident’s scope.
Why did Dell force a password reset?
Dell said its countermeasures included a mandatory Dell.com password reset. The company described the step as part of its response to the attempted extraction; the reset does not, by itself, show that passwords were stolen. Dell also said it began an investigation, retained an independent digital forensics firm and engaged law enforcement.
Rank #2
- POWERFUL SECURITY KEY: The Security Key C NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key C NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key C NFC via USB-C and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
What should affected customers do?
Dell advised customers to change the password on any other account where they had reused their Dell.com password. That is important because a password exposed in one service can put other accounts at risk when people reuse it.
- Change any reused password on the other account, using a different password for each service.
- If you cannot access your Dell.com account, use Dell’s current account-recovery process rather than links in an unexpected message.
Is this the same as Dell’s 2024 data incident?
No. The May 2024 incident was separate from the 2018 password-reset event. TechCrunch reported that the later matter involved a Dell portal and information including customer names, physical addresses and hardware or order details such as service tags, item descriptions, order dates and warranty information. That report said Dell stated that email addresses, telephone numbers and payment information were not included in the 2024 incident. TechCrunch later reported that Ireland’s Data Protection Commission had received a notification and that the matter was under assessment. Those later reports do not change what Dell disclosed about the 2018 event.
Quick wins for a faster PC:
Repair Windows errors before they cause bigger problemsFix Now →Scan for outdated or missing drivers - takes under a minuteDriver Scan →Rank #3
- Requires 3 "AAA" batteries (included)
- Unit auto-locks for 30 minutes after 5 consecutive incorrect PINs
Sources on the separate 2024 incident: TechCrunch, May 9, 2024; TechCrunch, May 16, 2024.
Quick Recap
Best Value
- FIDO-ONLY FUNCTIONALITY: Supports FIDO2 (passkeys) and FIDO U2F protocols for passwordless and second-factor authentication. Does not support OTP, TOTP, Smart Card (PIV), or other advanced features - upgrade to YubiKey 5 Series for extended functionality
- SECURE AND CONVENIENT: Passwordless MFA login with the YubiKey Bio authenticator and biometric information using a fingerprint, with a PIN as a fallback. Simply plug in via USB and use your fingerprint to authenticate
- DEVICE & OS COMPATIBILITY: Compatible with Windows, macOS, ChromeOS, and Linux. Works seamlessly with supported services like Google and Microsoft accounts, and major password managers. See the full compatibility list at "Works With YubiKey"
- DURABLE & RELIABLE: Resistant to tampering, water, and crushing. No batteries or network connectivity required, offering dependable authentication without any downtime. Securely manufactured in USA & Sweden
- Yubico Authenticator App - Fingerprint enrollment, passkey management and PIN configuration available via the app app - Upgrade to YubiKey 5 Series to generate one-time-passwords (OTP) via Yubico Authenticator and for advanced compatibility (OATH, PIV)
Rank #4
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.




