時尚

【】

字号+作者:囫圇吞棗網来源:知識2024-10-23 04:46:21我要评论(0)

Google has revealed it had left some business users' passwords exposed in plain text.In a blog post

Google has revealed it had left some business users' passwords exposed in plain text.

In a blog post on Tuesday, the tech giant said it had discovered the issue in Google's popular enterprise product, G Suite, back in January.

When stored in a system, passwords are cryptographically hashed -- scrambled into a random-looking assortment of numbers -- which make it near-impossible to try and guess what it is.

The bug, which had existed since 2005, stored an unhashed, plain text copy of the password in G Suite's administration console. The console had allowed administrators to reset a password for a user, in case they forgot it, but Google said the function no longer exists.

Mashable Games
Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!
SEE ALSO:Microsoft realizes password expiration is poor security

"This practice did not live up to our standards," Suzanne Frey,Google's VP of engineering, Cloud trust, said in the blog post.

"To be clear, these passwords remained in our secure encrypted infrastructure. This issue has been fixed and we have seen no evidence of improper access to or misuse of the affected passwords."

Google didn't reveal how many users were impacted by the bug, but the issue only affects users of G Suite, and does not impact people who use Google's free consumer accounts.

The company said it has contacted G Suite administrators to change those impacted passwords, and has reset passwords for those users who have not done so already.

While Google's security issue arguably pales in comparison, it comes after millions of passwords were discovered stored in plain text by Facebook back in March.


Featured Video For You
This WhatsApp flaw helped send spyware with a voice call

TopicsCybersecurityGoogle

1.本站遵循行业规范,任何转载的稿件都会明确标注作者和来源;2.本站的原创文章,请转载时务必注明文章作者和来源,不尊重原创的行为我们将追究责任;3.作者投稿可能会经我们编辑修改或补充。

相关文章
  • Researchers create temporary tattoos you can use to control your devices

    Researchers create temporary tattoos you can use to control your devices

    2024-10-23 04:38

  • Come for Elon Musk, best not miss: The problem with 'Muskism'

    Come for Elon Musk, best not miss: The problem with 'Muskism'

    2024-10-23 03:13

  • Video games are now on Netflix, sort of

    Video games are now on Netflix, sort of

    2024-10-23 02:32

  • 'King of the Hill' co

    'King of the Hill' co

    2024-10-23 02:13

网友点评