U.S. intelligence chief used the same password for years. Worse, it was leaked

A recent controversy has erupted around U.S. Director of National Intelligence Tulsi Gabbard, after it was revealed that she used the same weak password across multiple online services for years. This alarming detail raises serious concerns about digital hygiene at the highest levels of government, especially considering her responsibility in overseeing national security.

Password reuse exposed in multiple breaches

According to reports, Gabbard reused a simple password on accounts such as Gmail, Dropbox, LinkedIn, and MyFitnessPal between 2012 and 2019. While no official government systems appear to have been compromised, this still implies a major lapse in basic cybersecurity protocols. During that period, Gabbard had access to sensitive congressional data through roles in the Armed Services and Foreign Affairs committees.

The reused credentials were discovered in leaked datasets known as “combolists” — massive compilations of user-password pairs gathered from various breaches. These lists, widely circulated on the dark web, included login details linked to Gabbard’s personal website and email addresses. Wired confirmed the reused password appeared in separate breaches published in 2017 and again in 2019.

Not a recent problem, but still worrying

A spokesperson stated that the exposed passwords date back nearly a decade and have since been changed. However, cybersecurity experts stress that even historic leaks carry ongoing risks, especially if similar password patterns persist or if old credentials grant access to archived data.

This incident highlights a vital lesson: even top officials are not immune to basic digital mistakes. It also serves as a reminder that password managers, unique credentials, and multi-factor authentication are not optional — they are essential.