27
posted ago by justicein2020 +27 / -0

Which one is worse?

Option 1: Twitter is storing passwords in a way that let the attacker actually obtain the login information and log in as the individual people and tweet as they would normally.

Option 2: Twitter has no internal security at all and anyone at the company can craft tweets that look like they came from any user and you should never trust them. on anything. ever.

No wonder they're working so hard to censor and cover this up. They look like complete braindead morons either way.

Which one is worse? Option 1: Twitter is storing passwords in a way that let the attacker actually obtain the login information and log in as the individual people and tweet as they would normally. Option 2: Twitter has no internal security at all and anyone at the company can craft tweets that look like they came from any user and you should never trust them. on anything. ever. No wonder they're working so hard to censor and cover this up. They look like complete braindead morons either way.
Comments (4)
sorted by:
3
Reborned20 3 points ago +3 / -0

I will go with option 1
and

I agree with option 2 as well

Never trust these Deep Tech Leftists, they have No Belief in the Good of the Kingdom. It is only about control and money, why do you think they are trying to fool the entire planet into being followers ?

It is Electronic Communism. But what is Communism? its is control based on who has the money.

Oh, and if there is someone here who believes that these Leftists would not try to kill you if you took them out of power, I would direct you to Hillary Clinton, the first Lady of The CIA. Ask Jeffery Epstein and Mark Rich if you see either one of them in the next world what they think. Depending on where one "ends up in the next world"

If we merely admit that the International Bankers have been gaining more control daily over crashing our Economy with an engineered virus and buying up our real estate and companies, we can move to the next step of defeating them.

2
justicein2020 [S] 2 points ago +2 / -0

Option 1 is pretty bad still. A company should never ever have any way to actually know your password.

They should only be able to reset it and make you set a new one.
But they should never actually have access to your password in the clear.

Or they get hacked. And now the hacker can build a dictonary of passwords to use on popular sites and log in to whatever. like your bank or credit card company sites. sure it won't work for everyone. but it will work for enough people to make it profitable.

1
BuckyKatt60 1 point ago +1 / -0

Could be either one or two, honestly. Right now I’m leaning toward 2- disgruntled insider.

1
PatriotShopUSA 1 point ago +1 / -0

Number 1 is unlikely as the common practice in web development is to hash user passwords.

The only way this "hack" could have happened is if someone gained unauthorized access to an admin account or tool and manually created those tweets, or access to whatever system they use to warehouse their data.