why are people saying dropbox was hacked? username passwords from a 3rd party site were reused at dropbox? how is that DB's fault? confused?
-
-
Replying to @jonhoneyball
@jonhoneyball They were used to access an employees account, and that was used to get usernames and passwords.1 reply 0 retweets 0 likes -
Replying to @sbisson
@sbisson@bazzacollins ok but that wasnt a hack of dropbox security per se, though1 reply 0 retweets 0 likes -
Replying to @jonhoneyball
@jonhoneyball@bazzacollins Storing usernames and passwords in plaintext was :-)1 reply 0 retweets 0 likes -
Replying to @sbisson
@sbisson@bazzacollins but thats once they were in. And again its not a hack. They got in cos of bad password practise, which is not DB1 reply 0 retweets 0 likes -
Replying to @jonhoneyball
@jonhoneyball@bazzacollins Dropbox was storing usernames and passwords in the clear internally. That is the definition of bad security.1 reply 0 retweets 0 likes -
Replying to @sbisson
@sbisson@bazzacollins i agree storing username/pw in plain text was bad. But the route to that file wasnt a hack of DB's security.2 replies 0 retweets 0 likes
@jonhoneyball @sbisson And presumably the Dropbox employee was sharing passwords across sites, which compromised his account
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.