“Then the first thing these people will do is try to check if the password they’ve harvested from your gym is the same one you use for your email.”
However, this could open up a further Pandora’s Box of scams Britons could fall victim to.
Mr Costain added: “If you think about your email account, it’s the place where you go to reset all of your passwords, right?
“If you do a password reset on any website, they’ll probably email you a reset code to your email account.
“So, as a criminal, you very quickly get into someone’s life and the ability to start resetting passwords, taking over accounts and seeing who a person has recently messaged.