They didn't store it in plain text...though it wasn't much better...it was encrypted using DES...which was cracked like 10 years ago. It's pretty much equivalent to using WEP for wireless security. It's better than nothing, but not much better.Neptunus Hirt said:Storing passwords as plaintext is such a basic security flaw. I can't really believe that those guys would code their website in such a poor manner.
I was affected by both breaches. My password was complex at gawker so it would take a bit of time to crack it. I have since changed any passwords I actually care about that were the same as my gawker password (including escapist). So the only thing I really care about that got out was my email, same as here, same email too. So I'll definitely thoroughly be spammed. Fortunately gmail has decent spam protection.