0 like 0 dislike
2.0k views
by
It amazes me how many sites allow you to register, and then send you an e-mail to your registered address containing your password in plain-text. There is never a warning stating that the site will email the password you use, for all to see.

Sending passwords by e-mail works when you forget a password. The site changes it and e-mails you the new one, which you then use to log in and change it to something else. The e-mailed password is not active for very long, and it isn’t something you chose.

Sending you your own password, either in a welcome e-mail once you register, or as a response to a “forgot password” request is bad security. Really bad security.

Compounding this is the fact that e-mail providers such as Google Gmail state in their privacy policy that “deleted” e-mail may be kept indefinitely on their backup servers. As soon as someone e-mails you your password in plain-text, to a Gmail account, Google are likely to have that archived forever.

You can’t tell whether a site is going to do to this, so it isn’t possible to use a “less sensitive” password for sites which will e-mail your password back to you. If you have groups of passwords; one for sites you use to pay for things, one for forums, one for other less important sites, for instance, then you may enter your “usual” password without realising it may be compromised by being sent in an e-mail, visible to anyone along the way that wants to read it.

Sites should seriously consider the security implications of sending passwords by e-mail, especially if there is no prior warning that this will happen!

Please log in or register to reply this topic.

Related topics

0 like 0 dislike
0 replies 1.2k views
Internet Protection in 3 Easy Steps

Let me tell you something. I don't know everything there is to know about the Internet. . However, I do know how to protect my computer. It's really not that hard. If you follow some basic rules, you will know how to protect your computer also. Every day there are new viruses and new things ... different types of filter software for sale. Filter software can be especially handy if you have children around and want to keep them from seeing different types of web sites.

posted by OpinionOwl
0 like 0 dislike
0 replies 1.2k views
5 Surefire Tips for Effective Email Marketing

Over the past few years, research has continued to prove the benefits of e-mail marketing for business: low costs, high conversion rates and detailed tracking are all notable features. But e-mail marketing is becoming much more than just a tool for spammers and e-businesses. Consumers are becoming increasingly savvy on ... if you aim properly by following these essential rules of play, you should soon be reaping the same major results as so many online and offline businesses.

posted by Tomatoad
0 like 0 dislike
0 replies 1.7k views
Email Autoresponders

Those of you who wish to take control of your business on the Internet with automated tasks need a functional and easy to use automatic email response system. An automatic email response system will take care of any emails you receive, and automatically deliver a response to potential clients 24 hours a day - 7 days ... email autoresponders will help you get better profits as well. Even though they will cost you money - the results they give you will far outweigh the cost.

posted by Sumogre
0 like 0 dislike
0 replies 1.1k views
A Quick Look At Email Spam Filters

You must be eagerly finding for a way out to stop receiving Spam mails in your inbox. Take a quick look at email spam filters to get some idea on how to check spam. There are a number of email spam filters that you can use in your computer. For official purposes, you have anti server software spam ... . Some of the email spam filters are configured and you can easily customize it or the network administrator can also customize it according to the requirement of the company.

posted by AmazingKitty
...