Some IT guys have caught on to this and require 2 digits difference.
So "ThisJobSucks#11" becomes "ThisJobSucks#22"
How would they know how many digits changed? They don't store the password in cleartext.
Right?
...
Well they don't need to store it to a drive. You just entered your old password in order to login and authorise your password change.
It'll still be in memory against your session.
Sure if the means of authorising a password change is your old pw then everythings fine
Some IT guys have caught on to this and require 2 digits difference.
So "ThisJobSucks#11" becomes "ThisJobSucks#22"
How would they know how many digits changed? They don't store the password in cleartext.
Right?
...
Well they don't need to store it to a drive. You just entered your old password in order to login and authorise your password change.
It'll still be in memory against your session.
Sure if the means of authorising a password change is your old pw then everythings fine