Approve the Cookies
This website uses cookies to improve your user experience. By using this site, you agree to our use of cookies and our Privacy Policy.
OK
Forums  •   • New posts  •   • RTAT  •   • 'Best of'  •   • Gallery  •   • Gear
Guest
Forums  •   • New posts  •   • RTAT  •   • 'Best of'  •   • Gallery  •   • Gear
Register to forums    Log in

 
FORUMS Forum FAQ and Information Forum Talk 
Thread started 28 Oct 2018 (Sunday) 14:30
Search threadPrev/next
sponsored links (only for non-logged)

Password WTF

 
Alexia
Member
Avatar
111 posts
Joined Nov 2004
     
Oct 28, 2018 14:30 |  #1

I am here to update my password since 1Password was alerting me about it.

Having to use Google to find out where to change my password, finding out that the site was relaunched without the ability to change a password, and then find that the utility is stored under a link with a terrible name is a sign of poor design. Adding on to that the password change form recommends saving it in a plain text file locally for backing it up!

Time for some penetration testing.


Canon EOS 70D
Canon EF-S 18-55mm IS STM
Canon EF 70-200mm F/4.0 L USM

  
  LOG IN TO REPLY
Pekka
El General Moderator
Avatar
18,385 posts
Gallery: 36 photos
Best ofs: 7
Likes: 2457
Joined Mar 2001
Location: Hellsinki, Finland
Post edited over 5 years ago by Pekka.
     
Oct 29, 2018 15:41 |  #2

Alexia wrote in post #18738494 (external link)
Having to use Google to find out where to change my password,

The Password Reset link is on every page, when an unlogged user view the forums. If you are logged in, you could just ask here if in doubt.


HOSTED PHOTO
please log in to view hosted photos in full size.

finding out that the site was relaunched without the ability to change a password,

Wrong. You can change your password.

and then find that the utility is stored under a link with a terrible name is a sign of poor design.

When you use the site for more than 1 day, you will know what FYEO is, it is no more terrible than UserCP or that cog icon.

Adding on to that the password change form recommends saving it in a plain text file locally for backing it up!

"TYPE YOUR PASSWORD INTO A PLAIN TEXT EDITOR (like Notepad), SAVE IT AND COPY IT FROM THERE TO THIS FORM. "

There no recommendation to save locally. Nowhere it is advised that plain text file is NOT saved as a password protected file/achive and under a password protected computer account / device / cloud. These things are common daily computing routines and the save recommendation is there because password should be so complex that you should NOT remember it easily. Do you trust commercial/freeware companies saving your passes? If so, which is more secure, your own device/USB stick/removable drive or their cloud?

I'll change that text to more clear:

"TYPE YOUR PASSWORD INTO A PLAIN TEXT EDITOR (like Notepad) AND COPY IT FROM THERE TO THIS FORM. THAT ENSURES THERE WILL BE NO TYPOS. Backup your password to a secure device/service."

Time for some penetration testing.

Done.


The Forum Boss, El General Moderator
AMASS 2.5 Changelog (installed here now)

  
  LOG IN TO REPLY
CyberDyneSystems
Admin (type T-2000)
Avatar
52,917 posts
Gallery: 193 photos
Likes: 10108
Joined Apr 2003
Location: Rhode Island USA
     
Nov 01, 2018 16:11 |  #3

Welcome back to POTN. :)
Glad you got your gear list updated with no issues.


GEAR LIST
CDS' HOT LINKS
Jake Hegnauer Photography (external link)

  
  LOG IN TO REPLY
sponsored links (only for non-logged)

1,273 views & 7 likes for this thread, 3 members have posted to it and it is followed by 2 members.
Password WTF
FORUMS Forum FAQ and Information Forum Talk 
AAA
x 1600
y 1600

Jump to forum...   •  Rules   •  Forums   •  New posts   •  RTAT   •  'Best of'   •  Gallery   •  Gear   •  Reviews   •  Member list   •  Polls   •  Image rules   •  Search   •  Password reset   •  Home

Not a member yet?
Register to forums
Registered members may log in to forums and access all the features: full search, image upload, follow forums, own gear list and ratings, likes, more forums, private messaging, thread follow, notifications, own gallery, all settings, view hosted photos, own reviews, see more and do more... and all is free. Don't be a stranger - register now and start posting!


COOKIES DISCLAIMER: This website uses cookies to improve your user experience. By using this site, you agree to our use of cookies and to our privacy policy.
Privacy policy and cookie usage info.


POWERED BY AMASS forum software 2.58forum software
version 2.58 /
code and design
by Pekka Saarinen ©
for photography-on-the.net

Latest registered member is SteveeY
1376 guests, 177 members online
Simultaneous users record so far is 15,144, that happened on Nov 22, 2018

Photography-on-the.net Digital Photography Forums is the website for photographers and all who love great photos, camera and post processing techniques, gear talk, discussion and sharing. Professionals, hobbyists, newbies and those who don't even own a camera -- all are welcome regardless of skill, favourite brand, gear, gender or age. Registering and usage is free.