Hacker Timesnew | past | comments | ask | show | jobs | submitlogin

A client's admin sends credentials via email - including logins and passwords for mission critical infrastructure. When asking him about security concerns he said: "Our mail server's using HTTPS, everything is secure"

I haven't responded to that.



Noob question: what are the problems here? Mail server being compromised, and/or any of the sender/recipient machines?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: