Quote:
Originally Posted by silvermerc
Well today as you may have read my site got defaced due to a moderators encrypted password being leaked by another forum, I was wondering if theres any way to encrypt the passwords better?
Ross
|
vbulletins security wasnt the issue in your case as you've pointed out, if the other forum wasnt hashing their passwds and just encrypting them, then your moderator made the mistake of using the same passwd on both sites.
encryption is reversible, hashing as vbulletin does isn't.