| http://www.w3.org/ns/prov#value | - The problem was a combination of:1) If a user answers the password reset question correctly, and the user has no secondary email account attached to their yahoo account, the user is automatically authenticated2) Palin did not have a secondary email address attached to her Yahoo account3) Once the attacker answered Palin's foolishly simple forget-password security questions, they were immediately g
|