4 ms·
They obviously don't store their passwords in plaintext. It would be terrible practice even if their incentive is just to save their user info in case of a brea
by mrastro 7y ago
They obviously don't store their passwords in plaintext. It would be terrible practice even if their incentive is just to save their user info in case of a breach.
They just hash common variations of the password (e.g. missing the last letter) to make it easier to login. Is that a good usability/security trade off? I think so but that's more debatable.