Advertisement
If you have a new account but are having problems posting or verifying your account, please email us on hello@boards.ie for help. Thanks :)
Hello all! Please ensure that you are posting a new thread or question in the appropriate forum. The Feedback forum is overwhelmed with questions that are having to be moved elsewhere. If you need help to verify your account contact hello@boards.ie
Hi there,
There is an issue with role permissions that is being worked on at the moment.
If you are having trouble with access or permissions on regional forums please post here to get access: https://www.boards.ie/discussion/2058365403/you-do-not-have-permission-for-that#latest

Passwords over email

  • 08-08-2013 10:18am
    #1
    Registered Users, Registered Users 2 Posts: 37,485 ✭✭✭✭


    It really bugs me when you sign up to something and get sent the password by email. That password is now compromised (IMO anyway).

    I just signed up to the OWASP Ireland mailing list and they sent me the password I used to sign up. Don't do that! A security mailing list that emails me my password in plaintext? COME ON PEOPLE!

    For people (not me, thankfully) who reuse the same password over and over it could lead to a very bad time.

    Rant over.


Comments

  • Registered Users, Registered Users 2 Posts: 2,626 ✭✭✭timmywex


    Khannie wrote: »
    It really bugs me when you sign up to something and get sent the password by email. That password is now compromised (IMO anyway).

    I just signed up to the OWASP Ireland mailing list and they sent me the password I used to sign up. Don't do that! A security mailing list that emails me my password in plaintext? COME ON PEOPLE!

    For people (not me, thankfully) who reuse the same password over and over it could lead to a very bad time.

    Rant over.

    Id forgot OWASP do that...very poor really


  • Closed Accounts Posts: 587 ✭✭✭Dum_Dum


    Mailman list passwords are not strictly required and are regarded as 'throwaway'.


  • Registered Users, Registered Users 2 Posts: 1,299 ✭✭✭moc moc a moc


    Don't forget that this probably means that they are also storing passwords in plaintext! You should bring this to their attention directly - particularly shameful given the 'security' prentences of the OWASP folks.

    With all the high-profile password DB hacks we've had in recent years, you'd think people would learn...


Advertisement