Many Identity and Access Management folks blame the users for Credential Reuse even when they have 10 or 1,000 Service Providers where these experts say they should have unique credentials. To LDAPWiki this is a Human Limitation and not a practical expectation to be achieved.
Once attackers have a collection of usernames and passwords from a breached website or Service Provider (easily acquired on any number of black market websites on the Internet), they know that if they use these same credentials on other websites there’s a chance they’ll be able to log in.
Multi-Factor Authentication is an reasonable resolution to Credential Reuse