I have forgotten my password for my DZone.com account, but lucky me most of this web-sites have a “Forgot password?” link as DZone has. So I clicked the link, entered my username and a second later I got a mail from DZone.
But the content really surprised me. Nowadays you would expect and especially from such big Web 2.0 web sites that password security is one of there top security priorities.
But look at he mail I got:
You or someone on dzone.com has requested a mail containing your password. Username: xxxx Password: here_is_my_password_in_clear_text You can login to dzone.com at: http://www.dzone.com/login.html If you did not request this password email, please disregard it.
They are sending you the current password in clear text!!!
So what does that mean? Continue reading


