A case study in why credentials are revoked before firings.

  • sylver_dragon@lemmy.world
    link
    fedilink
    English
    arrow-up
    17
    ·
    9 hours ago

    On Feb. 1, 2025, Muneeb Akhter asked Sohaib Akhter for the plaintext password of an individual who submitted a complaint to the Equal Employment Opportunity Commission’s Public Portal, which was maintained by the Akhters’ employer. Sohaib Akhter conducted a database query on the EEOC database and then provided the password to Muneeb Akhter.

    What type of shit password storage policies where they using, if this is even remotely accurate? Sure, these guys should face consequences for their actions. But if this is a US FedGov system, whatever management signed off on this system needs to be in the next jail cell over. Their security seems to be criminally negligent.