33
RAZERZ
7y

HOW FUCKING HARD CAN IT BE TO NOT STORE PASSWORDS IN CLEARTEXT AND THEN PROCEED TO SEND ME AN UNENCRYPTED EMAIL WITH THE PASSWORD IN IT??? THE SITE HAS A PREMIUM FUCKING SSL AND SAFETY CERTIFICATES YET THEY STILL DON'T COMPLY TO THIS? FUCK YOU! IF IT WASN'T FOR THAT I HAD TO ORDER A NEW SCREEN FOR MY BROKEN PHONE, YOU COULD'VE SUCKED BETTER THAN ME + VACUUM CLEANER.

Sorry abt that. But for real, mytrendphone stores passwords in plain texts and waves a fucking safety certificate in your face...

Comments
  • 13
    I could be mistaken but I think you accidentally pressed caps lock...
  • 1
  • 0
    Devrant really needs a capslock filter @dfox 😄
  • 7
    Sending a password in plaintext after registering doesn't mean it's not hashed in the db, just saying
  • 0
    @linuxxx it wasn't after the registration, it was after I purchased something where they sent that, in an unencrypted email...
  • 2
    @linuxxx
    Exactly! Thank you!

    @RAZERZ
    You have your own emailserver? How do you know that the email is not encrypted?
  • 0
    @Linux I do, but I didn't use the mail to sign up for that site. I used my gmail account and gmail shows on the mail if it was sent using any forms of encryption and it says that the sender did not encrypt it.
    It wasn't after I created an account of which they sent me my login (I already had an account there since before), it was after I placed my order (they said I needed to use them for tracking) and I don't think they had my password stored in a variable in php somewhere during the whole time I had an account...
  • 2
    @RAZERZ
    Alright! Then I understand. They should atleast use tls.. email them :)
  • 1
    @FrodoSwaggins
    I just check the logs,
  • 0
    @Linux Yeah, lucky my neighbors don't know enough about computers to intercept hehehe
  • 0
  • 1
    @RAZERZ
    Your neighbors cant see the traffic...
    1: your wifi is encrypted
    2: the traffic from Gmail to your pc is over tls.
  • 1
    @Linux I'm an idiot.
Add Comment