PEAK XOOPS - New Auto-Login Hack (V3) is applied in englishin japanese

Archive | RSS |
Site News
Site News : New Auto-Login Hack (V3) is applied
Poster : GIJOE on 2005-07-31 16:03:06 (9896 reads)

AUTO-LOGIN V3 is a little safer than V2.
V3 stores user's password as md5 encoded with time limitation.
If cookie is stolen by someone, he can't login after auto-login expiration.
This means that short expiration makes your site a little bit safer.

This hack is applied now.
$_COOKIE['autologin_pass'] of V3 is incompatible with V2.

Thus, you as a user enabling auto-login have to log-in manually once.

0 comments
Printer friendly page Send this story to a friend

Comments list

Login
Username or e-mail:

Password:

Remember Me

Lost Password?

Register now!