Larion Studios forum stores your passwords in unhashed plaintext. Don't use a password there that you've used anywhere else.

you are viewing a single comment's thread
view the rest of the comments
[–] 48 points 2 years ago* (4 children)

Sending your password right after you created it might not be best practice, but it doesn't mean it's stored unhashed in the database. It looks like they're using a third party forum software, so it should be pretty straightforward to figure out whether they do or not.

Looks like they address it here: https://forums.larian.com/ubbthreads.php?ubb=showflat&Number=669268#Post669268

  • source
  • hideshow 4 child comments
  • [–] 13 points 2 years ago (3 children)

    it should be pretty straightforward to figure out whether they do or not

    Not really since it's closed-source: https://www.ubbcentral.com/

    But they seem to have been in business since 1997, so I highly doubt that they'd fuck up the "never store passwords in plain text" rule.

  • source
  • parent
  • hideshow 3 child comments
  • [–] 11 points 2 years ago (2 children)

    Yeah, I was looking it up, and when I saw they've been selling this forum software since 1997 I was less confident about passwords being hashed. They address it in their forums and they're making it clear that the passwords are actually hashed, and they're looking at migrating to other solutions regardless.

  • source
  • parent
  • hideshow 2 child comments