Page 1 of 1

FileZilla itself has become a security hole for webmasters.

Posted: 2009-07-21 01:02
by Aaron.Walkhouse
See: http://blog.stopbadware.org/2009/07/16/ ... d-websites

As the FZ client currently stores passwords unencrypted and in plain text in sitemanager.xml,
do you have any plans to close this obvious security hole by encrypting the passwords or the file?

Re: FileZilla itself has become a security hole for webmasters.

Posted: 2009-07-21 07:38
by botg
The security hole is elsewhere. If there is malware on the system it cannot be trusted, no encryption helps there.

End of discussion.