Hacker News new | ask | show | jobs
by eequah9L 85 days ago
> Over the past few months, our former payment provider Nexi S.p.A. (“Nexi”) requested access to private data, which we understood to be specifically the usernames and passwords of our supporters.

I must be missing something, but why is there an expectation that clear text passwords would even be known?

1 comments

Probably because most people haven't internalized how password hashing works.