luno in geeks

Open letter to Monster.com

Jan 27, 2009 09:51

I wrote the following in the comments box this morning. We'll see if I get a reply...

As a network security engineer, I'm amazed that Monster would be so foolish as to store clear text passwords in its database. There's absolutely no reason or excuse for doing that ( Read more... )

Leave a comment

Comments 2

tmtl January 27 2009, 19:29:00 UTC
Well done?

Reply


kalium January 28 2009, 02:14:21 UTC
At this point, MD5 can't really be considered a secure hash for passwords. At least, not without salt.

Reply


Leave a comment

Up