View Single Post
Old 05-20-2011, 02:23 PM  
V_RocKs
Damn Right I Kiss Ass!
 
Industry Role:
Join Date: Dec 2003
Location: Cowtown, USA
Posts: 32,391
Quote:
Originally Posted by BV View Post
oh, i forgot to mention, most password traders don't buy passwords

traders hack your password file
I think you just hit the nail on the head. It could be a coincidence or he is just reading into and seeing the data how he chooses to see it instead of letting it tell its own story.

Most people don't share their paid for password with the world. They get their password cracked. If you allow the customer to create their own username/password and you don't have any kind of throttling for bruteforce attacks, I can get perhaps 20% of your users passwords in about 1 hour...

If you do make the passwords for them, you need to keep your password file secure. That means not using free versions of calendar software, forums, etc... Also your own programmer(s) have to be top notch.
V_RocKs is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote