当前位置:首页 >時尚 >【】

【】

2024-12-22 13:49:34 [焦點] 来源:有聲有色網

Google has revealed it had left some business users' passwords exposed in plain text.

In a blog post on Tuesday, the tech giant said it had discovered the issue in Google's popular enterprise product, G Suite, back in January.

When stored in a system, passwords are cryptographically hashed -- scrambled into a random-looking assortment of numbers -- which make it near-impossible to try and guess what it is.

The bug, which had existed since 2005, stored an unhashed, plain text copy of the password in G Suite's administration console. The console had allowed administrators to reset a password for a user, in case they forgot it, but Google said the function no longer exists.

Mashable Games
Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!
SEE ALSO:Microsoft realizes password expiration is poor security

"This practice did not live up to our standards," Suzanne Frey,Google's VP of engineering, Cloud trust, said in the blog post.

"To be clear, these passwords remained in our secure encrypted infrastructure. This issue has been fixed and we have seen no evidence of improper access to or misuse of the affected passwords."

Google didn't reveal how many users were impacted by the bug, but the issue only affects users of G Suite, and does not impact people who use Google's free consumer accounts.

The company said it has contacted G Suite administrators to change those impacted passwords, and has reset passwords for those users who have not done so already.

While Google's security issue arguably pales in comparison, it comes after millions of passwords were discovered stored in plain text by Facebook back in March.


Featured Video For You
This WhatsApp flaw helped send spyware with a voice call

TopicsCybersecurityGoogle

(责任编辑:休閑)

    推荐文章
    热点阅读