We’ve all been there.

  • @average650
    link
    English
    301 year ago

    The worst part is that if they know that password is already in use… then they aren’t storing their passwords appropriately.

    • teft
      link
      English
      191 year ago

      You could store the passwords as hashes and just compare the hashed value.

      • @average650
        link
        English
        311 year ago

        yes, but then they are not salted, which is what they should be doing.

        • pewter
          link
          English
          181 year ago

          True, but for the same big O they can salt the password for each user and compare it to what they have stored. My big pet peeve (that I’ve actually seen) is when they say your password is too similar to an old one. I have no idea how that could be reasonably done if they’re storing your password correctly.

        • teft
          link
          English
          61 year ago

          Good call.