That would explain why everyone who was on LiveJournal for many years got an email saying "I caught you watching porn" and sending their LiveJournal password as "proof." If only irreversible hashes are stored, or the authentication system otherwise avoids storing passwords or anything that can be turned back into the password, this can't happen even if the database is breached.
Fixing that was long overdue, but I'm glad it's being fixed.
no subject
Fixing that was long overdue, but I'm glad it's being fixed.