Dylan Tweney
Wired

Amazon.com Security Flaw Accepts Passwords That Are Close, But Not Exact

An Amazon.com security flaw allows some customers to log in with variations of their actual password that are close to, but not exactly, their real password. The flaw lets Amazon accept as valid some passwords that have extra characters added on after the 8th character, and also makes the password c
Dylan Tweney

An Amazon.com security flaw allows some customers to log in with variations of their actual password that are close to, but not exactly, their real password.

The flaw lets Amazon accept as valid some passwords that have extra characters added on after the 8th character, and also makes the password case-insensitive.

For example, if your password is “Password,” Amazon.com will also let you log in with “PASSWORD,” “password,” “passwordpassword,” and “password12345.”

Full story: Amazon.com Security Flaw Accepts Passwords That Are Close, But Not Exact | Threat Level | Wired.com.

Share
More from Dylan Tweney
‘Windows Will Be Everywhere,’ Ballmer Promises
Wired

‘Windows Will Be Everywhere,’ Ballmer Promises

LAS VEGAS — Microsoft unveiled its vision of the future, where everything from phones and tablets to big-ass tables runs Windows. Microsoft CEO Steve Ballmer delivered a somnolescent and nearly news-free keynote presentation on the eve of the Consumer Electronics Show here, laying out his company’s
Dylan Tweney 1 min read
Wired

Supreme Court Considers Kindle v. iPad

Newly-approved Supreme Court Justice Elena Kagan is a Kindle user, while longtime conservative Justice Antonin Scalia wields an iPad. This nugget of information appeared in a recent video clip on C-SPAN. Both justices use the devices (plus hard copy printouts) to read the vast quantities of written
Dylan Tweney 1 min read

Dylan Tweney

If you're bored, you're not paying attention

Great! You’ve successfully signed up.

Welcome back! You've successfully signed in.

You've successfully subscribed to Dylan Tweney.

Success! Check your email for magic link to sign-in.

Success! Your billing info has been updated.

Your billing was not updated.