It should be pretty easy to fix. Our passwords are stored with a 1-way encryption mechanism. The only thing we can do is reset the password. If a book implemented a similar policy and logged anytime a pw was reset and what CS rep was responsible for the reset everything should be secure. At least more secure than it sounds like it currently is.
|