34

Wrost security fix ever seen?

encode that passwords in base64 is safe enough.

And keep the password.txt accessible from internet it's safe because nobody know that it exists...

Comments
  • 3
  • 9
    You can even add it to the git repository so you can have it versioned.
  • 2
    i have seen a command line on a ctf who display every file on the server :B
  • 2
    @makmm NOTHING is 'just' safe.

    2018: AES-256 is safe enough.
    2040: AES-256 is not safe enough anymore switch to something else
  • 0
    @reach4me I really hope that that box is retired.
  • 1
    store the password in plaintext, we're just a small startup no one wants to hack us
Add Comment