Yeah, you read that right.
Kids, don’t try this sort of security in your own web apps. This is reserved for high-end financial institutions only.
I'm currently working on a book for web freelancers, covering everything you need to know to get started or just get better. Want to stay updated? Sign up for my mailing list to get updates when the book is ready to be released!
{ 10 comments to read ... please submit one more! }
{ 0 Pingbacks/Trackbacks }


“passwords should not be longer than 9 characters, not contain special characters and should spell the word ‘secret’”
Look at ICQ. There your passwords can´t be longer than 8 characters. lol
I’m not sure I see a problem, “password” is only 8 letters
It should also say, “it can’t be riley6 either”
Well, I guess you know your password is safe in unencrypted, un-hashed form directly in their DB char field.
Sweet, I’m safe with 12345. Whoops, I guess I’ll have to change the combination on my luggage.
The bigger problem is that I saw almost the same problem with internet banking. Password can’t be more than 10 symbols long?!?!
“riley6″? Damn how they could figure out my password?
*yours*?! give it back, you swine!
They’re making sure we don’t get carpal tunnel syndrome from typing exuberant passwords.