Vulnerability Development mailing list archives
Re: Plain text password for Microsoft (icwip.dun)
From: Knud Erik Højgaard <kain () egotrip dk>
Date: Tue, 9 Jul 2002 21:03:47 +0200
Recommendations --------------- Store passwords in an encrypted form
How are you gonna accomplish this since the password has to go 'over the wire' in plaintext? To be able to authenticate with the password you need to be able to decrypt it.. right? -Knud
Current thread:
- Plain text password for Microsoft (icwip.dun) Steven Jones (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) Roland Postle (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) Knud Erik Højgaard (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) Roland Postle (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) Knud Erik Højgaard (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) hellNbak (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) Valdis . Kletnieks (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) hellNbak (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) Blue Boar (Jul 09)
- Palladium dullien (Jul 10)
- Malicious COM Surrogates Jason Coombs (Jul 29)
- Re: Plain text password for Microsoft (icwip.dun) Roland Postle (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) Joerg Mayer (Jul 09)
- Re: Plain text password for Microsoft (icwip.dun) Juan M. Courcoul (Jul 10)