Please tell me I didn't just accidentally give my email to a Spam list.
For instance, apparently billg@microsoft.com should change his or her password, according to the site.
21–30 of 104 posts
Please tell me I didn't just accidentally give my email to a Spam list.
For instance, apparently billg@microsoft.com should change his or her password, according to the site.
Am I the only one that feels uncomfortable with these kind of sites? Anyway, I tried "abc124" and received: "It looks like your passwords may be safe. No instances of compromise are recorded in this database. However, it's good practice to change your critical passwords regularly and ensure they are not re-used across multiple sites."
How many people would fall for it if it first asked for e-mail, said it was safe, and then "test your password too?"
you might think that the phone number of that cute girl in that movie combined with her initials is a safe password, but if you check out some of the password lists that have popped up the last year you'll see that alot of people thought the same way.
My first thought was that this would have fields for me to enter my email address and password, under the pretense of "we will test your password to see if it's secure". Wonder how many people you could get with that...
Can't this entire site be replaced with: YES
YESPlenty of sites still store an unsalted hash in the database and these are often compromised.
If your hash turns up in a rainbow table in Google's index, definitely change it to something more secure (longer, more symbols).
so, can someone answer this for me? I have a personal domain on google apps. The login ID is different than the email address I use/advertise. e.g. my username for login is first-initial+last-name@[domain].com But the email address I use for everything on that account is first-name@[domain].com This service states that my account was compromised on 12/12/2010 most recently at the first-name@[domain].com though you co…
so, can someone answer this for me? I have a personal domain on google apps. The login ID is different than the email address I use/advertise. e.g. my username for login is first-initial+last-name@[domain].com But the email address I use for everything on that account is first-name@[domain].com This service states that my account was compromised on 12/12/2010 most recently at the first-name@[domain].com though you co…
Earlier quoted context omitted.
How many people would fall for it if it first asked for e-mail, said it was safe, and then "test your password too?"
well, if it was actually safe to do, a password tester would be smart for a lot of people. you might think that the phone number of that cute girl in that movie combined with her initials is a safe password, but if you check out some of the password lists that have popped up the last year you'll see that alot of people thought the same way.
Find the MD5 of your password and Google that. Plenty of sites still store an unsalted hash in the database and these are often compromised. If your hash turns up in a rainbow table in Google's index, definitely change it to something more secure (longer, more symbols).
(Yes, I know that sniffing such things is not trivial. Still.)
so, can someone answer this for me? I have a personal domain on google apps. The login ID is different than the email address I use/advertise. e.g. my username for login is first-initial+last-name@[domain].com But the email address I use for everything on that account is first-name@[domain].com This service states that my account was compromised on 12/12/2010 most recently at the first-name@[domain].com though you co…
To me this means that my password is out there, and now a part of someone's dictionary. Change all places where that password is used immediately. I am currently moving to LastPass with randomly generated 16-32 char passwords for every site. It's less of a pain than one might think.