By yeukhon
No. The terrible thing is what have they been doing with people’s password if the DBA, some random offshore $1 per hour guy working for this hosting company was able to read the password in plaintext, he/she could have hack the accounts or sold them to people well before the compromise. Do people ever wonder how identity thief can happen? Unsafe transaction leaving greedy and unethical people selling information to organized criminals… no duh.
Like the other commenter said, sadly, 000webhost and many were very popular back in mid 2000s during the Great PHP Frontier goldrush. I had used it, but luckily I was using a ghost email address that couldn’t tie back to my real identity, so the best people can do is add that password to a list of known password database.
Read more here: https://news.ycombinator.com/item?id=10475577
yeukhon comments on "Breaches, traders, plain text passwords, ethical disclosure and 000webhost"
No comments:
Post a Comment