Changing backup email address now requires password

To avoid a security hole, if you want to change your backup email address on the Options -> Account Preferences screen, you now have to enter your existing password. This stops the hole where if a user accidentally left a session open on a public computer, someone could change the backup email address and then request a lost password to be sent to that address.

Posted in Technical. Comments Off
Follow

Get every new post delivered to your Inbox.

Join 5,290 other followers

%d bloggers like this: