โŒ

Reading view

PSA: Star Sonata 2 seems to have an undisclosed breach and they store passwords in PLAINTEXT

PSA: Star Sonata 2 seems to have an undisclosed breach and they store passwords in PLAINTEXT

I just received a blackmail email to a unique, disposable email address that I used exclusively for Star Sonata 2. I Google'd to see if there's any public knowledge of a data breach and couldn't find any relevant results.

The fact that the attackers have my password in plaintext means the devs aren't salting or hashing passwords which is a massive security red flag.

This is a friendly reminder to change your password if you played Star Sonata 2 and in general to not reuse passwords.

Edit: I use randomly generated passwords per site and thus can tell that my site-specific password was leaked.

submitted by /u/TuringTestDropout
[link] [comments]
  •