Hello,

--- Kai Schaetzl <[EMAIL PROTECTED]> wrote:
> What the heck is this supposed to be good for? It took me TWO guesses
> to 
> guess the username of a member of this list and get in. Username
> verified, 
> now up for brute-forcing the password ...

Can we be allowed to change our reseller username, please? This is
getting ridiculous, the recklessness of having our username be able to
be guessed at will in numerous places.

Yahoo has it right, having a unified login at https://login.yahoo.com/.
Tucows doesn't need to be re-inventing the wheel each time a new
service is rolled out. Each time things get "re-invented", the
possibility of security problems, like that above, increases.

A few hours thinking of best-practicees could alleviate some of these
issues.

Sincerely,

George Kirikos
http://www.kirikos.com/








Reply via email to