I am always pissed off when I discover that a site I use is a plaintext offender. Well, if they are mom and pop establishments that do not deal with money or personal data, I might exhibit a wee bit of tolerance. However, large cooperations have no excuse especially since salting and hashing is such a simple operation. Some sites I have come across include WileyPlus, the online teaching environment as well as surprise, surprise, the submission portal for the International Journal of Information Security(IJIS). You think that with so many postgrad security majors submitting their papers, someone would have raised a stink over it.
IJIS plaintext offender
Tags:
Security
Similar Articles
Hiding compressed files in images - Have been doing this for quite some time, just wanted to share the method. The following code should work on Linux/Mac. Step 1. Zip/Rar/7z your secret file zip hideme.zip s3cr3t Step 2. Append ...
DES key parity bit calculator - I was doing some reverse engineering and I could not find any tool which expands a 56 bit DES key into a 64 bit key with the parity bit included. Expanding the key is a pretty laborious process ...
Bangladesh bank heist - The media initially attributed the hack to a couple of cheap second-hand $10 switches. However, according to further reverse engineering, this is not a snatch and grab but a full scale bank heist ...
Hijacking QR codes - Just finished printing my poster for a school project in which contained a QR code for users to download an android app. It was my first time printing out 300dpi@A1 size and thankfully it turned ...