Security

General discussions about the release versions of Capitalism Lab
Post Reply
jondonnis
Level 5 user
Posts: 283
Joined: Sat Jul 24, 2010 12:53 am

Security

Post by jondonnis »

When are you going to bother putting security on your sites? The forum logins are insecure. The DLC verification is insecure so you send over a persons user name and their key in plain text.

I doubt anyone would bother targeting this place but that's not the point. Some people maybe using the same login and password here as other sites. It makes having a secure password for this site pointless because you're sending the data over in plain text due to lack of SSL everywhere.

What is also the point of putting the download of the Capitalism Lab exe file behind a login? Again, this login is insecure and the link to the .exe is also insecure and can just be handed out to anyone as there is no checking done.
Post Reply