Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> Fowler said he didn't know if the database was created legitimately and then accidentally exposed or intentionally used for malicious reasons.

Seriously? In what possible world can a collection of plain-text login credentials exist for any legitimate purpose?



Law enforcement / national security. E.g. https://www.gov.uk/government/publications/intelligence-serv...

Although I can anticipate what you'll say...


your password manager needs them in decryptable form...




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: