I thought this was interesting enough to share:
In 2011, for about four hours, Dropbox allowed any password to log into any account. For a service that stores unencrypted personal data, a bug of this scale is a major failing.