Register - Login
Views: 99317403
Main - Memberlist - Active users - Calendar - Wiki - IRC Chat - Online users
Ranks - Rules/FAQ - Stats - Latest Posts - Color Chart - Smilies
04-21-22 06:46:02 AM
Jul - General Chat - How do I change my password? New poll - New thread - New reply
Pages: 1 2Next newer thread | Next older thread
Rachel Mae

Creature of Chaos
Level: 141


Posts: 2387/5929
EXP: 33566677
For next: 553337

Since: 07-03-07

Pronouns: she/her
From: Foxglen

Since last post: 9 days
Last activity: 2 days

Posted on 12-21-09 11:04:02 PM Link | Quote
Originally posted by Hintetsomaru
Honestly, I like the way Residentevilfan did their forum at one time. You HAD to have a specific cookie in your browser's cookie folder to log in to your account, and each account as a different cookie.
Doesn't change the fact that a lot of people share usernames/passwords between sites, and thus acquiring the passwords is still a security risk. It just makes that particular site a little safer.

Also, how does such a system manage legitimate logins from other computers (i.e. laptops, libraries, public kiosks) if only one specific cookie is allowed? What if the user regularly deletes their cookies?

____________________
Liliana
"A horrible person". That's what it says. "A horrible person."

We weren't even testing for that.


Level: NaN


Posts: 1558/-3841
EXP: NaN
For next: 0

Since: 07-23-07


Since last post: 10.2 years
Last activity: 10.1 years

Posted on 12-22-09 10:17:40 PM Link | Quote
Recently in the news, there was a report about a social website for children. Not only did they store the passwords in plaintext (by itself already a huge error), but wildcards were enabled for the password field. So if you entered twelve question marks (twelve being the maximum allowed password length) it would match any password and allow you to log on as any user.

____________________
Originally posted by HotSoup
IE8 is just as secure -if not more so- than any browser on the market.
Rena
I had one (1) message in Discord deleted and proceeded to make a huge, huge mess about how it was a violation of free speech and how moderators are supposed to be spam janitors and nobody should have the right to tell me not to talk about school shootings
Level: 135


Posts: 2778/5390
EXP: 29043190
For next: 291815

Since: 07-22-07

Pronouns: he/him/whatever
From: RSP Segment 6

Since last post: 330 days
Last activity: 330 days

Posted on 12-23-09 11:52:17 AM Link | Quote
Post #2778 - 12-23-09 06:52:17 AM

That is the sort of thing the phrase "epic fail" was intended to describe.

____________________
why not?
Pages: 1 2Next newer thread | Next older thread
Jul - General Chat - How do I change my password? New poll - New thread - New reply


Rusted Logic

Acmlmboard - commit 47be4dc [2021-08-23]
©2000-2022 Acmlm, Xkeeper, Kaito Sinclaire, et al.

28 database queries.
Query execution time: 0.101148 seconds
Script execution time: 0.009350 seconds
Total render time: 0.110498 seconds