'Big Honking Security Hole' or something else?

Dotan Cohen dotancohen at gmail.com
Mon Oct 18 17:55:31 UTC 2010


On Mon, Oct 18, 2010 at 11:17, Tony Pursell <ajp at princeswalk.fsnet.co.uk> wrote:
> Indeed, if you go to System > Preferences > Passwords & Encryption Keys,
> expand Passwords, click on a line, click Properties, click Password,
> Check 'Show Password', it does show the password. But the fact is, that
> you have logged in with your own password. If your computer is
> vulnerable to 'snoopers' or remote login attacks, you need to ensure
> that you observe due security anyway.

Security is adding layers, assuming that every layer is broken in and
of itself. I would have little problem "lifting" your plaintext
password file in a Firefox addon or "Ubuntu tweak script" or whatnot.


> Strong login password, logging out
> when you leave the PC, etc, etc, because there is more at stake than
> your passwords.
>

Did you know that you can paste your password to the mailing list, and
the software masks it? See, this is my password:
*******

Try it!

-- 
Dotan Cohen

http://gibberish.co.il
http://what-is-what.com




More information about the ubuntu-users mailing list