Are there any risks with prepopulating a username from a querystring on a login page?

So, we’ve got a fairly standard login page on a web application.

We want to make a slight change so that if a user gets their password wrong, the page reloads (as it currently does) but the username is kept so the user doesn… Continue reading Are there any risks with prepopulating a username from a querystring on a login page?

I accidentally entered password for a website as a username for another website

First and foremost, I am sorry for posting anonymously for security reasons. Exposing my identity might mean exposing my vulnerability, which comes from the problem decribed below.

I have accounts in websites A1,A2,A3,…etc… Continue reading I accidentally entered password for a website as a username for another website

WPA2-PSK / EAP-PEAP MSCHAPv2: Do user-name or passphrase or SSID have any official restrictions?

I am testing a new WLAN client mode of a device. So that the device can handle preferably every possible case, I have to know which characters and lengths are generally allowed in the SSID, user-name and passphrase.

So are t… Continue reading WPA2-PSK / EAP-PEAP MSCHAPv2: Do user-name or passphrase or SSID have any official restrictions?