On Mon, Jul 29, 2013 at 11:25 PM, Brian Wolff <[email protected]> wrote:

> Specifically? Are there bugs filed for them? I'm personally not aware
> of any serious security issues currently affecting us (Obviously I
> don't have access to security bugs, but I don't have the impression
> there are serious issues affecting us).
>

Password hashing, CSRF for anonymous users, the fact that we don't require
TLS for logins...

They all have bugs filed I believe.

*-- *
*Tyler Romeo*
Stevens Institute of Technology, Class of 2016
Major in Computer Science
www.whizkidztech.com | [email protected]
_______________________________________________
Wikitech-l mailing list
[email protected]
https://lists.wikimedia.org/mailman/listinfo/wikitech-l

Reply via email to