[Bug 28660] appdb uses phisable/replayable credentials

wine-bugs at winehq.org wine-bugs at winehq.org
Tue Jul 16 04:17:01 CDT 2013


http://bugs.winehq.org/show_bug.cgi?id=28660

--- Comment #9 from André Pirard <A.Pirard at ulg.ac.be> 2013-07-16 04:17:01 CDT ---
>Using a single OpenID account is no more secure than using the same e-mail
>and password on multiple sites, nor is it worth the additional hassle.

This is maybe why many sites offer to login with a Google or Facebook or
whatever account and require that you be affiliated with them.  OpenID is the
no affiliation equivalent.

It is absolutely no hassle at all, just a bit of understanding that it "works
like Google" which is by far a more complicated authorization system.

Mind you, changing a single compromised password is easier than 200. The
problem is getting control of your account again. But maybe they'll all read
this one day:
http://www.papou.byethost9.com/notes/lost_account_recovery.html

OpenID is not for highly sensitive accounts. But these are usually not
protected by a plain password anyway.

-- 
Configure bugmail: http://bugs.winehq.org/userprefs.cgi?tab=email
Do not reply to this email, post in Bugzilla using the
above URL to reply.
------- You are receiving this mail because: -------
You are watching all bug changes.


More information about the wine-bugs mailing list