Showing posts with label plaintext. Show all posts
Showing posts with label plaintext. Show all posts

Tuesday, November 23, 2021

Taking the "s" out of sFTP

from here

How is it possible that a major service provider like GoDaddy is still using plaintext in 2021? This is not their first data breach. There is no excuse for this at thisi point.

Tuesday, March 31, 2020

A message to web developers

from here and here (image source one and two)

Plain text passwords have been way, way too common on websites over the years. No doubt the thing that made it so common is that login pages are so boring and easy to underestimate that developers don't spend the time to learn how to do them properly. That really hasn't changed which is why plain text passwords are still too common (as Plain Text Offenders handily demonstrates).

Friday, March 22, 2019

So much for "Move fast and break things"

from here

I keep thinking there's nothing Facebook can do that surprises me anymore, but Facebook keeps proving me wrong.

Tuesday, February 26, 2019

Shockingly insecure

from here

Millions of people, who presumably have little or no choice about which utility company they use, have their security compromised by poor password security on the vendor's side. It's a data breach waiting to happen