• Points are back! Read about it HERE


    current issues

    1 - NEW PLAYERS - Players who created an account on or after Oct 15 2023 are not able to log into the forum
    2 - AWOL - We do not have an AWOL button under the ACTIVE tab yet. Please check each game to see if you are AWOL.
    3 - STUCK GAMES - Some games will not load properly. If you encounter this, please post stuck games HERE

    Thanks.

  • Welcome to Major Command's RISK Game forum.

    If you are a registered player, please log in:

    LOG IN

    If you are new to Major Command and would like to
    play our RISK game online. Then please sign up here:

    SIGN UP

Passwords in plain text [Security Enhancement]

dan

New member
Awesome Player
Joined
Jul 20, 2010
Messages
1
Not only are the input fields for passwords not marked as password (therefore it's not hidden to prying eyes) but I suspect they aren't being encrypted. Most people use their passwords for multiple websites so this is really dangerous, especially when coupled with an email address.

To fix this mark any input field with the type "password" and then store passwords as md5 hashes.
 

Badorties

Boss General (Retired on a Desert Island)
O.G.
Awesome Player
Gentlemen of Leisure
AADOMM
M.C. Play Testers
The Embassy
The Wiki Bar
Joined
Jul 25, 2009
Messages
6,398
good call. The sign up field is not masked on purpose, to facilitate ease, but I think it's better masked.
 

Evan

Jr. Programmer I
O.G.
Awesome Player
M.C. Play Testers
Joined
Sep 27, 2009
Messages
1,973
Welcome to MC and thanks for the information.

We have always stored passwords as hashes. We added ssl encryption to both the signup and login forms so that passwords are now transmitted securely. The password input box is now masked on the register form per your suggestion.
 

RjBeals

Map Commander
O.G.
Awesome Player
AADOMM
Joined
Jul 25, 2009
Messages
1,866
now that's how a site should listen to and apply feedback.

Nice work Evan.
 

Badorties

Boss General (Retired on a Desert Island)
O.G.
Awesome Player
Gentlemen of Leisure
AADOMM
M.C. Play Testers
The Embassy
The Wiki Bar
Joined
Jul 25, 2009
Messages
6,398
+rep!
 
Top