• ramble81@lemm.ee
    link
    fedilink
    English
    arrow-up
    12
    ·
    2 days ago

    That tells me they’re not using salted and hashed passwords. How can they still be doing that? Idiots.

    • dragontamer@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      edit-2
      2 hours ago

      Not necessarily. If a Javascript vulnerability exists, they can steal the password you type before it even reaches the database (long before the salting and hashing steps).

      If the backend code running on their servers is similarly compromised, then the password can be stolen from code-memory before it is salted or hashed.

  • Unboxious@ani.social
    link
    fedilink
    English
    arrow-up
    4
    ·
    2 days ago

    Ugh, I signed up for Crunchyroll back in the day when I only used two or three passwords for everything instead of using a password manager. Welp, time to finally change a bunch of passwords I guess.

    • nyan@lemmy.cafe
      link
      fedilink
      English
      arrow-up
      2
      ·
      17 hours ago

      Some people feel that getting their entertainment material from the high seas is immoral or just more work than they want to do. That leaves them stuck with whichever monopolist has the rights to whatever it is they want to watch. Doesn’t matter whether the company is any good or not.

    • ramble81@ani.social
      link
      fedilink
      English
      arrow-up
      5
      ·
      1 day ago

      Because that “dog shit” company is helping to fund dubs which I happen to like. Hidive is the only other real player in that market