Hi,
I have a couple of questions regarding the security of the Comodo forum:
1: Are passwords stored in plain text in the forum db? Upon registration
i received a confirmation e-mail with my username and password in
plaint text. That’s really a bad practice in this day and age.
2: Login to the forums is not automatically done via ssl, thus the passwords
fly in plain text up to the Comodo forum server. Mind you that there are lots
of lots of hops depending on ones location and all of those routing points can
intercept those passwords with no probs.
In my opinion these should be fixed, nobody wants their passwords flying around
in plain text or stored in that way, just in case.
Regards.