Advertisement
  1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Poll on extent of protecting passwords

Comments in 'Plugin Development' started by PEMapModder, Apr 13, 2015.

?

Read the thread post and vote.

  1. Yes.

    3 vote(s)
    60.0%
  2. No.

    2 vote(s)
    40.0%
  1. PEMapModder
    Offline

    PEMapModder Notable Member Plugin Developer

    Joined:
    Oct 9, 2013
    Posts:
    7,294
    Plugins:
    11
    Minecraft User:
    PEMapModder
    Do you agree that a (public) auth plugin stores the first character of the passwords and their lengths, and then in a chat message, scans for substrings of that length starting with that character, and check if the substring matches the stored hash? (This check will include all chat messages and commands and placing signs)

    Arguments
    For: This helps avoiding players telling people their passwords in the game, and this protects less mature players.
    Against: This would make the password more vulnerable from being brute-force cracked.

    Edit: this thread should be posted in the General Discussion forum. Please move this thread if you find this necessary.
  2. TrueBaccaAli
    Offline

    TrueBaccaAli Active Member

    Joined:
    Apr 6, 2015
    Posts:
    71
    How could this make passwords more vulnerable to brute-force hacks? I like the idea though.
  3. Primus
    Offline

    Primus Notable Member

    Joined:
    Apr 7, 2015
    Posts:
    1,470
    Minecraft User:
    PrimusLV
    For! They are more Mature players then hackers :p
    LDX likes this.
  4. PEMapModder
    Offline

    PEMapModder Notable Member Plugin Developer

    Joined:
    Oct 9, 2013
    Posts:
    7,294
    Plugins:
    11
    Minecraft User:
    PEMapModder
    There are some immature players who share their passwords if they want to join someone's team, use someone's VIP gift code, etc. There they go sharing their passwords.

Share This Page

Advertisement