search
Password
Trends
- 1Why one tech editor switched to a new password managerโMein Umzug auf einen neuen Passwort-Manager
A German technology editorial describes moving from one password manager to another, walking through the practical reasons for the switch and how the migration of logins was handled. The piece has drawn strong attention, with readers debating which password manager is worth trusting and how painful it is to export years of stored credentials to a new service.
- 2Fake $500 iPhone voucher scam targets Apple usersโผApple iPhone scam offering $500 voucher may give criminals your personal photos, passwords
A scam circulating among iPhone users offers a $500 voucher in exchange for personal details, potentially handing criminals access to victims' photos and passwords. News outlets are warning recipients not to click the links or share information, and to report the messages to Apple instead.
- 3Harvard Business School VPN Adds Single Sign-On SupportโผDid You Know? HBS VPN Now Supports Single Sign-On
Harvard Business School has announced that its VPN service now supports single sign-on, allowing students, faculty and staff to connect using their existing HBS credentials instead of a separate password. The update is aimed at simplifying secure remote access to school resources. No broader reaction has been recorded yet, as the announcement appears to be informational.
- 4jshERP flaw leaks MD5 password hashes, remains unpatchedโCVE-2026-94413: jshERP through 3.6 leaks unsalted MD5 password hashes via /user/info, enabling offline cracking and auth
A newly published vulnerability, CVE-2026-94413, affects jshERP versions through 3.6. The /user/info endpoint exposes unsalted MD5 password hashes, which attackers could crack offline and replay to bypass authentication. The flaw carries a CVSS score of 6.5 and currently has no vendor patch. Security practitioners are urging administrators to restrict access to the affected endpoint as an interim measure while waiting for an official fix.
- 5Brocade SANnav vulnerability leaks passwords in log filesโ๐จ EUVD-2026-94756 ๐ Score: 8.2/10 (CVSS v3.1) ๐ฆ Product: Brocade SANnav, Brocade SANnav ๐ข Vendor: Brocade ๐ Updated: 202
A high-severity vulnerability, tracked as EUVD-2026-94756 with a CVSS score of 8.2, has been disclosed in Brocade SANnav versions before 2.4.0b and 3.0.0. The flaw causes encoded passwords and authentication tokens to be printed in log files, potentially exposing credentials. Users are advised to update to fixed releases and review log data for sensitive information.
- 6Passkey adoption lags even among security professionalsโPasskey adoption lags as security pros still use passwords https:// fawkes.rocks/2026/10/08/passke y-adoption-lags-as-se
A new report finds that passkey adoption is falling short of expectations, with even security professionals continuing to rely on traditional passwords. The finding is raising questions about why the phishing-resistant technology has struggled to gain traction despite years of promotion from major platforms and industry groups.
- 7
Ichikawa City Zoological and Botanical Garden in Chiba Prefecture is drawing attention for the evolving daily password it announces alongside its capybara Punch-kun. The phrase has changed over time from "Gohamo" to "Go" and now to "Pa," and fans are enjoying tracing how the greeting has developed with the animal's popularity.
- 8maxlength=20 on password fields blocks Vanguard loginsโ<input type="password" maxlength="20"> prevents me from logging into Vanguard
A developer has written about being locked out of Vanguard because its login form uses maxlength=20 on the password input, silently truncating longer passwords. The piece argues the widely copied pattern is harmful: users with longer passwords cannot log in, and password managers may fill credentials that fail without explanation. The post calls on sites to remove maxlength from password fields.
Repos
- driceroland/Search A small, fast WebKit browser for macOS, by Office Commun.