Jump to content

I have a program called Trusteer Rapport (use mainly for online banking) that every once in a while will remind me that apparently the forum isn't encrypted. This might be concerning to some if they use the same password here as they do for other things as well, particularly sensitive information.

Case: Corsair 4000D Airflow; Motherboard: MSI ZZ490 Gaming Edge; CPU: i7 10700K @ 5.1GHz; Cooler: Noctua NHD15S Chromax; RAM: Corsair LPX DDR4 32GB 3200MHz; Graphics Card: Asus RTX 3080 TUF; Power: EVGA SuperNova 750G2; Storage: 2 x Seagate Barracuda 1TB; Crucial M500 240GB & MX100 512GB; Keyboard: Logitech G710+; Mouse: Logitech G502; Headphones / Amp: HiFiMan Sundara Mayflower Objective 2; Monitor: Asus VG27AQ

Link to comment
https://linustechtips.com/topic/5710-linus-is-the-website-encrypted/
Share on other sites

Link to post
Share on other sites

What do you mean by encrypted? It's not using https since they probably haven't bothered buying a certificate. It's not a big deal for forums, just don't use the same password that you use for email etc. I'd assume that passwords are hashed in the database by VB5 though.

Link to post
Share on other sites

lol, yeah let's just hope there's no bug like that. I still don't understand the VB5 choice from a secruty perspective. hopefully there aren't any obvious SQLi or XSS vulnerabilities. I could pentest, but it doesn't really bother me. You shouldn't ever use a handle/passowrd on a forum that would possibly damage you if it were compromised.

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×