News

CNBC’s Lesson In Password Security Was a Security Fail

Everyone uses passwords, for your emails and computers to even gaining access to your phone to play flappy birds. With so many systems at risk, we have to make sure our passwords are secure. CNBC wanted to help out with a lesson in password security, except their lesson turned from “do this” to a prime example of how not to handle passwords.

Originally the tool (which can still be found at this web archive link) requested you entered your password before checking to see just how strong your password was. Originally spotted by Google’s one and only Adrienne Porter Felt, the “secure” password checker did a little less than handle your password securely.

First up was the fact that it sent your password to google docs, meaning that not only you were seeing your password but as it was being sent in an unencrypted format, anyone watching your network traffic or in between you and the document had full access to the password.

If this wasn’t embarrassing enough the tool also seemed to share your password with 3rd parties, all the while the site claimed that “no passwords are being stored”.

Obviously, some people are quite upset by this, with the site not only outright lying (it has now been updated to deal with things in a more secure matter) but to also trick people into entering passwords under the illusion that the site would help you secure your account.

If you’ve ever used an online tool like this, we would recommend changing your password as there is no guarantee that the system or even the site was secure and protected your details.

Gareth Andrews

Disqus Comments Loading...

Recent Posts

Electronic Arts Titles Played for Over 11 Billion Hours in 2024

Electronic Arts (EA) announced today that its games were played for over 11 billion hours…

2 days ago

Just 15% of Steam Gaming Time in 2024 Was Spent on New Releases

Steam's annual end-of-year recap, Steam Replay, provides fascinating insights into gamer habits by comparing individual…

2 days ago

STALKER 2 Gets Massive 110GB Patch With 1800+ Fixes

GSC GameWorld released a major title update for STALKER 2 this seeking, bringing the game…

2 days ago

Intel Unveils Core 200H Processors Based on the Previous Raptor Lake Refresh

Without any formal announcement, Intel appears to have revealed its new Core 200H series processors…

3 days ago

Ubisoft Reportedly Developing a New Quadruple A Game

Ubisoft is not having the best of times, but despite recent flops, the company still…

3 days ago

STALKER 2: Heart of Chornobyl Update 1.1 Fixes 1,800 Issues and Revamps A-Life 2.0

If you haven’t started playing STALKER 2: Heart of Chornobyl yet, now might be the…

3 days ago