You are viewing a single thread.
View all comments 51 points
So they’re not hashing or salting the passwords too. Cool…
17 points
They might be doing it in the DB query, but they’re definitely not sanitized beforehand.
2 points
2 points
9 points
Which makes me want to try and insert a password of a few megabytes worth of text. Should be fine, since there is no max lenght defined, right?
4 points
1 point
*