Chinese Hackers Infiltrate New York Times Computers
1–10 of 183 posts
Re: Chinese Hackers Infiltrate New York Times Computers
#2Does this mean the NYTimes is storing passwords in plaintext?
Re: Chinese Hackers Infiltrate New York Times Computers
#3"Security experts found evidence that the hackers stole the corporate passwords for every Times employee and used those to gain access to the personal computers of 53 employees" Does this mean the NYTimes is storing passwords in plaintext?
Re: Chinese Hackers Infiltrate New York Times Computers
#4"Security experts found evidence that the hackers stole the corporate passwords for every Times employee and used those to gain access to the personal computers of 53 employees" Does this mean the NYTimes is storing passwords in plaintext?
I think if they have the ability to steal the passwords, even if they weren't plain text, they didn't do the proper precautions of encrypting with a salt. So either way, they failed.
Re: Chinese Hackers Infiltrate New York Times Computers
#5"Security experts found evidence that the hackers stole the corporate passwords for every Times employee and used those to gain access to the personal computers of 53 employees" Does this mean the NYTimes is storing passwords in plaintext?
Re: Chinese Hackers Infiltrate New York Times Computers
#6"Security experts found evidence that the hackers stole the corporate passwords for every Times employee and used those to gain access to the personal computers of 53 employees" Does this mean the NYTimes is storing passwords in plaintext?
"From there they snooped around The Times’s systems for at least two weeks before they identified the domain controller that contains user names and hashed, or scrambled, passwords for every Times employee."
Re: Chinese Hackers Infiltrate New York Times Computers
#7"Security experts found evidence that the hackers stole the corporate passwords for every Times employee and used those to gain access to the personal computers of 53 employees" Does this mean the NYTimes is storing passwords in plaintext?
Re: Chinese Hackers Infiltrate New York Times Computers
#8"Security experts found evidence that the hackers stole the corporate passwords for every Times employee and used those to gain access to the personal computers of 53 employees" Does this mean the NYTimes is storing passwords in plaintext?
Re: Chinese Hackers Infiltrate New York Times Computers
#9"A Symantec spokesman said that, as a matter of policy, the company does not comment on its customers."
Uh huh. Even when it's the customer doing the asking? Way to hide behind the policy.
Re: Chinese Hackers Infiltrate New York Times Computers
#10"Security experts found evidence that the hackers stole the corporate passwords for every Times employee and used those to gain access to the personal computers of 53 employees" Does this mean the NYTimes is storing passwords in plaintext?
The passwords aren't stored in plaintext, but with the computational power available to anyone (or substituting that, time), you start getting actual passwords in a couple of minutes (the worst ones), and maybe 90% in a few hours.