Skip to content
Better HN
Top
New
Best
Ask
Show
Jobs
Search
⌘K
undefined | Better HN
0 points
aw3c2
16y ago
0 comments
Share
This includes the login I guess...
0 comments
default
newest
oldest
philfreo
16y ago
can someone confirm that login info is sent in the clear? that's pretty terrible.
kam
16y ago
They claim they're using DIGEST-MD5, so not quite plaintext, but a broken hash algorithm
http://www.facebook.com/help/?faq=16742
http://www.facebook.com/help/?faq=16741
j0
16y ago
yep. they could have at least supported SASL to have the login info encrypted and then transport the rest of the stream unencrypted, but they did not.
j
/
k
navigate · click thread line to collapse