Secrets are meant to be hidden or, at the very least, only known to a specific and limited set of individuals (or systems). Otherwise, they aren't really secrets. In personal life, a secret revealed can damage relationships, lead to social stigma, or, at the very least, be embarrassing. In a developer's or application security engineer's professional life, the consequences of … [Read more...] about Secrets, Secrets Are No Fun. Secrets, Secrets (Stored in Plain Text Files) Hurt Someone
Stored
Google Stored G Suite Users’ Passwords in Plain-Text for 14 Years
After Facebook and Twitter, Google becomes the latest technology giant to have accidentally stored its users' passwords unprotected in plaintext on its servers—meaning any Google employee who has access to the servers could have read them.In a blog post published Tuesday, Google revealed that its G Suite platform mistakenly stored unhashed passwords of some of its enterprise … [Read more...] about Google Stored G Suite Users’ Passwords in Plain-Text for 14 Years
Facebook Stored Millions of Instagram Users’ Passwords in Plaintext
Facebook late last month revealed that the social media company mistakenly stored passwords for "hundreds of millions" of Facebook users in plaintext, including "tens of thousands" passwords of its Instagram users as well.Now it appears that the incident is far worse than first reported. Facebook today quietly updated its March press release, adding that the actual number of … [Read more...] about Facebook Stored Millions of Instagram Users’ Passwords in Plaintext