Hackers gained access to eBays systems by compromising staff accounts. Users names, encrypted passwords, email addresses, physical addresses, phone numbers and dates of birth. eBay says that staff members’ passwords were compromised by keylogging malware or old-fashioned phishing attacks. But shouldnt anyone with access to such sensitive databases have also been using some form of two-factor authentication? The moral of the story is to both review your password practices, change your eBay password, and don’t forget the human factor.”]
Source: https://grahamcluley.com/ebay-password-hack-human-factor/

