this post was submitted on 20 Mar 2024
59 points (98.4% liked)

Cybersecurity

5977 readers
128 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected]

Notable mention to [email protected]

founded 2 years ago
MODERATORS
 

Three cybersecurity researchers discovered close to 19 million plaintext passwords exposed on the public internet by misconfigured instances of Firebase, a Google platform for hosting databases, cloud computing, and app development.

top 3 comments
sorted by: hot top controversial new old
[–] [email protected] 18 points 10 months ago (2 children)

The companies that stored plaintext passwords need to be named and shamed. In 2024, there's absolutely no reason for passwords to not be hashed.

[–] [email protected] 6 points 10 months ago

Agreed. Ten years ago that wouldn’t be acceptable.

[–] LdyMeow 3 points 10 months ago

It’s worse than that….reading the article it’s like they went out of their way to do it poorly. Apparently forbade has built in tools to handle authentication….