<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Kommentarer till Spotify varnar för stulna lösenord</title>
	<atom:link href="http://ohsohightech.se/spotify-varnar-for-stulna-losenord/feed/" rel="self" type="application/rss+xml" />
	<link>http://ohsohightech.se/spotify-varnar-for-stulna-losenord/</link>
	<description></description>
	<lastBuildDate>Sat, 04 Feb 2012 14:13:54 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>Av: Tobias &#187; Länkar</title>
		<link>http://ohsohightech.se/spotify-varnar-for-stulna-losenord/comment-page-1/#comment-2373</link>
		<dc:creator>Tobias &#187; Länkar</dc:creator>
		<pubDate>Wed, 10 Jun 2009 20:55:33 +0000</pubDate>
		<guid isPermaLink="false">http://ohsohightech.se/?p=2317#comment-2373</guid>
		<description>[...] Spotify varnar för stulna lösenord [...]</description>
		<content:encoded><![CDATA[<p>[...] Spotify varnar för stulna lösenord [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Av: Peter Jaric</title>
		<link>http://ohsohightech.se/spotify-varnar-for-stulna-losenord/comment-page-1/#comment-2067</link>
		<dc:creator>Peter Jaric</dc:creator>
		<pubDate>Wed, 04 Mar 2009 19:07:09 +0000</pubDate>
		<guid isPermaLink="false">http://ohsohightech.se/?p=2317#comment-2067</guid>
		<description>Det är väl Despotify dom hänvisar till, misstänker jag.
Se denna kommentar från Despotifys källkod:
         * Prior to the 19th of December 2008 Spotify happily told clients
         * (including ours!) almost everything it knew about a particular
         * user, if they asked for it.
         *
         * Legitimate requests for this is for example when you add
         * someone else&#039;s shared playlist.
         *
         * This allowed clients to see not only the last four digits of the
         * credit card used to subscribe to the premium service, whether
         * the user was a paying customer or preferred commercials, but
         * also very interesting stuff such as the hash computed from
         * SHA(salt &#124;&#124; &quot; &quot; &#124;&#124; password).
         *
         * In theory (HE HE!) this allowed any registered user to request
         * somebody else&#039;s user data, get ahold of the hash, and then use
         * it to authenticate as that user.
         *
         * Fortunately, at lest for Spotify and it&#039;s users, this is not
         * the case anymore. (R.I.P poor misfeature)
         *
         * However, we urge people to change their passwords for reasons
         * left as an exercise for the reader to figure out.</description>
		<content:encoded><![CDATA[<p>Det är väl Despotify dom hänvisar till, misstänker jag. </p>
<p>Se denna kommentar från Despotifys källkod:</p>
<p>         * Prior to the 19th of December 2008 Spotify happily told clients<br />
         * (including ours!) almost everything it knew about a particular<br />
         * user, if they asked for it.<br />
         *<br />
         * Legitimate requests for this is for example when you add<br />
         * someone else&#8217;s shared playlist.<br />
         *<br />
         * This allowed clients to see not only the last four digits of the<br />
         * credit card used to subscribe to the premium service, whether<br />
         * the user was a paying customer or preferred commercials, but<br />
         * also very interesting stuff such as the hash computed from<br />
         * SHA(salt || &#8221; &#8221; || password).<br />
         *<br />
         * In theory (HE HE!) this allowed any registered user to request<br />
         * somebody else&#8217;s user data, get ahold of the hash, and then use<br />
         * it to authenticate as that user.<br />
         *<br />
         * Fortunately, at lest for Spotify and it&#8217;s users, this is not<br />
         * the case anymore. (R.I.P poor misfeature)<br />
         *<br />
         * However, we urge people to change their passwords for reasons<br />
         * left as an exercise for the reader to figure out.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Av: Marcus</title>
		<link>http://ohsohightech.se/spotify-varnar-for-stulna-losenord/comment-page-1/#comment-2066</link>
		<dc:creator>Marcus</dc:creator>
		<pubDate>Wed, 04 Mar 2009 17:20:30 +0000</pubDate>
		<guid isPermaLink="false">http://ohsohightech.se/?p=2317#comment-2066</guid>
		<description>Bra att dom löst problemet och att man enkelt kan byta lösenord.</description>
		<content:encoded><![CDATA[<p>Bra att dom löst problemet och att man enkelt kan byta lösenord.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
<!-- WP Super Cache is installed but broken. The path to wp-cache-phase1.php in wp-content/advanced-cache.php must be fixed! -->
