<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Immortal &#187; stumble upon</title>
	<atom:link href="http://shanegreenup.com/tag/stumble-upon/feed/" rel="self" type="application/rss+xml" />
	<link>http://shanegreenup.com</link>
	<description>Forever Moving Forward</description>
	<lastBuildDate>Fri, 27 Jan 2012 04:24:49 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Stumble Upon Password Security</title>
		<link>http://shanegreenup.com/2009/11/stumble-upon-password-security/</link>
		<comments>http://shanegreenup.com/2009/11/stumble-upon-password-security/#comments</comments>
		<pubDate>Wed, 04 Nov 2009 23:47:22 +0000</pubDate>
		<dc:creator>Aegist</dc:creator>
				<category><![CDATA[All]]></category>
		<category><![CDATA[Entrepreneurial]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[stumble upon]]></category>
		<category><![CDATA[stumbleupon]]></category>

		<guid isPermaLink="false">http://shanegreenup.com/2009/11/stumble-upon-password-security/</guid>
		<description><![CDATA[A quick follow up on my previous article about my Gmail account being hacked. I was trying to log in to my stumble upon account, but seemed to have the password wrong. So I submitted a &#8220;Forgot your Password&#8221; form, and received an email from stumble upon with my actual password in it. Not a [...]]]></description>
			<content:encoded><![CDATA[<p>A quick follow up on my previous article about my <a title="gmail security flaw" href="http://shanegreenup.com/2009/10/major-security-flaw-in-google-accounts/" target="_blank">Gmail account being hacked</a>.</p>
<p>I was trying to log in to my stumble upon account, but seemed to have the password wrong. So I submitted a &#8220;Forgot your Password&#8221; form, and received an email from stumble upon with my actual password in it. Not a password reset option, or a new randomly generated password, but my actual old password (which I thought i had already changed).</p>
<p>As if that alone wasn&#8217;t bad enough, when I then go and change my password they email me and tell me what the password has been changed to (in plain text of course) and state:<br />
&#8220;Please keep this email for future reference.&#8221;</p>
<p>I actually messaged StumbleUpon and recommended they reconsider this method of dealing with passwords. I&#8217;m sure most people will do what they say and keep the email, and then some of them will live to regret it one day too&#8230;</p>
<p><a class="a2a_dd a2a_target addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fshanegreenup.com%2F2009%2F11%2Fstumble-upon-password-security%2F&amp;title=Stumble%20Upon%20Password%20Security" id="wpa2a_2"><img src="http://shanegreenup.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share"/></a></p>]]></content:encoded>
			<wfw:commentRss>http://shanegreenup.com/2009/11/stumble-upon-password-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Served from: shanegreenup.com @ 2012-02-05 19:05:14 -->
