Author Topic: One of many, many website, still with an insecure log-in!  (Read 1156 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34052
  • malware fighter
One of many, many website, still with an insecure log-in!
« on: September 15, 2015, 02:18:45 PM »
When we are going here: http://mspmentor.net/blog/best-practices-deterring-cyber-hackers
I get an alert at Safer Chrome Security Report: Best Practices for Deterring Cyber Hackers | MS... padlock icon
mspmentor.net
Alerts (1)
Insecure login (1)
Password will be transmited in clear to -http://mspmentor.net/blog/best-practices-deterring-cyber-hackers?destination=node%2F54531%3Fgroup_id%3D8622
Infos (1)
Encryption (HTTPS) (1)
Communication is NOT encrypted
Protocol Support
SSL 3, TLS 1.0, TLS 1.2
SSL 3.0 is an outdated protocol version with known vulnerabilities.

We still see far too much of this on all sort of sites, and not only those with mixed content.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34052
  • malware fighter
Re: One of many, many website, still with an insecure log-in!
« Reply #1 on: September 15, 2015, 02:40:15 PM »
Just to realize the danger - test here, my good friends, go to: http://www.stealmylogin.com/demo.html

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!