Welcome, Guest. Please Login or Register.
Apr 25th, 2024, 2:34pm

Home Home Help Help Search Search Members Members Login Login Register Register
Arimaa Forum « Plaintext Password Storage? »


   Arimaa Forum
   Arimaa
   Site Discussion
(Moderator: supersamu)
   Plaintext Password Storage?
« Previous topic | Next topic »
Pages: 1  Reply Reply Notify of replies Notify of replies Send Topic Send Topic Print Print
   Author  Topic: Plaintext Password Storage?  (Read 1235 times)
restcoser
Forum Newbie
*



Arimaa player #9837

   


Gender: male
Posts: 1
Plaintext Password Storage?
« on: Aug 19th, 2014, 7:09am »
Quote Quote Modify Modify

When I accidentially pressed the "forgot password" button instead of login, I got the password mailed back in plaintext...
 
I'm not sure if this issue has been brought up before, but I just wanted to open this thread to make people aware of this threat.
 
If I get my password mailed back in plaintext it means that either the password is stored in plaintext or encoded in such a way the site can decode it easily.
 
This is not an issue when the password has been randomly generated (I use a password manager), but there are many people that actually use one password on multiple sites.
IP Logged
Fritzlein
Forum Guru
*****



Arimaa player #706

   
Email

Gender: male
Posts: 5928
Re: Plaintext Password Storage?
« Reply #1 on: Aug 20th, 2014, 8:48am »
Quote Quote Modify Modify

I'll bet a nickel passwords are stored in plaintext.  Nobody should use a password for arimaa.com that they use anywhere else.
IP Logged

Kushiel
Forum Full Member
***



Arimaa player #9913

   


Gender: male
Posts: 16
Re: Plaintext Password Storage?
« Reply #2 on: Sep 15th, 2014, 11:35am »
Quote Quote Modify Modify

I'd strongly recommend warning users when they create an account/change their password that their password will be stored in an unsecure manner.
 
I'm glad I saw this before I created my account, but hoping users find this thread is an unreliable method for letting them know you're handling their sensitive data in a poor manner.
IP Logged
Pages: 1  Reply Reply Notify of replies Notify of replies Send Topic Send Topic Print Print

« Previous topic | Next topic »

Arimaa Forum » Powered by YaBB 1 Gold - SP 1.3.1!
YaBB © 2000-2003. All Rights Reserved.