New User Authentication System Implemented

Today I have implemented a new user authentication on the live version of eSportsPress.com. If everything went well you should not experience any differences. The only thing that you might experience is being logged automatically if you used the old cookie based persistent login system.

The reason to implement a new system was due to the numerous news reports lately on user passwords being stolen from MySQL databases. Most of these stolen archives were cracked due to weak encryption. Mostly passwords were either stored in plain text or as MD5 hashes. The first method is absolutely ridiculous (however used more often than you would think) and the second is outdated. Back in 2008 when the first version of eSportsPress was written I also decided to store passwords as md5 hashes. Now, in 2012, I have upgraded this to a double salted sha512 encryption. This should make your password a lot more protected.

The cookie based login system has also been upgraded. This uses a unique token authenticated versus a double salted sha512 hash. Secondly, users authenticated via a cookie still have to provide their password when performing sensitive tasks (ie. changing your password). This should secure your account more rigorously.

So, enough technical chitchat. I hope everything went smoothly and you, as a user, do not experience any problems. However if problems with your account do occur please contact me or post a comment below.

Thanks!

Comments

Leifer

3 months ago #1 I can't connect to my iphone apps :(

ipestz

3 months ago #2 Hey Leifer, yes this is an issue raised in the last week. I'll try to fix this asap.

ipestz

3 months ago #3 Update: should be fixed now. If not, please comment or use the contact form below to notify me.

Leifer

3 months ago #4 That's works and that's roxx ;) Thanks a lot !!

Plague64

1 month ago #5 .Nice Work

fps

3 weeks ago #6 Are all feeds working? Some, such as hltv, don't seem to have news anymore

Plague64

3 weeks ago #7 several pages did not appear, I can not join my portal news either.

ipestz

3 weeks ago #8 @fps and @Plague64, thanks for the notifications. I have managed to fix some of the problems and more feeds are being read again. However I was unable to fix all problems (such as Fnatic and HLTV). I'll try to find some time to work on this, however I'm afraid it will take a few weeks :(
Sorry, but unfortunately eSportsPress is just something I work on on the side and currently my professional tasks take a lot of time.

ipestz

2 weeks ago #9 It seems most of it is fixed now. Took me less time then expected..

Add Comment

You are not logged in!
Gravatar
All Active Feed Sources
Facebook
Recent Most Active Users
100 Points

#1 SKGCLcom

10 Points

#2 famsy

10 Points

#3 TeamInfused

10 Points

#4 escene

6 Points

#5 infok1ck

Calculation info here.
eSportsPress Blog