Comment on Former IT contractor convicted for wiping 96 US government databases

floofloof@lemmy.ca ⁨20⁩ ⁨hours⁩ ago

According to court evidence, the incident began on Feb. 1, 2025, when Muneeb Akhter asked his brother for the plaintext password of a user who had submitted a complaint through the Equal Employment Opportunity Commission’s Public Portal. Sohaib allegedly queried the EEOC database to retrieve the credentials, which were then used to access the victim’s email account without authorization.

That shouldn’t be possible. Why were they storing passwords in plain text?

source
Sort:hotnewtop