[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[ale] a quick test of web site stupid
- Subject: [ale] a quick test of web site stupid
- From: erik at mathists.com (Erik Mathis)
- Date: Thu, 28 Feb 2013 15:00:48 -0500
- In-reply-to: <CAEo=5PwvgZguiPgoV2_ZzJ0ytjcSpPcK_C8H_RMNhYX5=bo4jQ@mail.gmail.com>
- References: <CAEo=5PwvgZguiPgoV2_ZzJ0ytjcSpPcK_C8H_RMNhYX5=bo4jQ@mail.gmail.com>
A loooong time ago I got a dialup account with alltel, they asked me my
what I wanted my username to be, I said root. I was getting their root
emails. I never tried to "hack" anything but I got a call the next day
asking me what I wanted my new username to be.
I dont know why this thread reminded me of that, but I got a sorely
needed smile.
-Erik-
On 02/28/2013 02:22 PM, Jim Kinney wrote:
> for a web site like, say, a utility company or a shopping site that
> stores my credit card, I like to test the security of their coding
> practices by trying to use a password that has a '.' and a '!' in it.
> When they password checker complains, I take that as a good sign their
> coders don't properly escape user input data and thus are pro