Cupid dating site login
The typical complaint, however, seemed to be that users were forwarding OKCupid emails without realizing that they were also handing over the keys to their accounts: When I got my first "login instantly" email, I didn't realize that "instantly" meant without having to enter a password, and I never tested it.
I forwarded the email to my friend to tell her about okcupid, and consequently she now has full access to my account.
It does expire eventually, but it is not clear how long that takes (I tested a link that was over a year old; it failed to work).
Dave Evans has been an expert on online dating almost as long as it's been around; he writes the Online Dating Insider blog and is a rabid online dater himself. "That certainly is a security issue of the highest order," he says.
Communication tools we offer you include chat rooms in which to find like-minded singles, instant messenger for texting people you fancy for at any time you like, winks, and many more. is a great place where you can push your dating drive to the maximum. Internet dating is based on compatibility, 100 per cent of which (or something very close to that) makes a match.Those who are have been complaining since 2009 about how easy it is to accidentally give out full account access. "This totally defeats the purpose of having a password for the site," one user said on the OKCupid forum.Another user noted that there is no mechanism to prevent "brute force" attacks, meaning a determined hacker could generate random URLs until he or she found one that would lead to an account.Another OKCupid user read her post, clicked on the link, and found himself inside someone else's inbox."I am far too much of a gentleman to read a lady's mail, but I did navigate around a little more, in order to confirm what I suspected: I was no longer logged on as myself, I was logged on as her," he wrote in a blog post titled "A Security Hole on OKCupid." "What if somebody went down one of these rabbit holes, who was not a gentleman (nor a lady) at all? " The token in the instant login link worked multiple times.