Though most of us cast stones at large-scale corporate password thefts, we ought to be checking our own glass houses, according to a security company called Trustwave. It just revealed that a single attack from a Dutch-based server has resulted in 2 million passwords pilfered from individual users for sites like Facebook and Google. The neer-do-well did it using a botnet and hacker program called Pony, which likely directed the stolen info through a gateway or so-called reverse proxy.