"Doesn't this mean that they are storing previous passwords in plaintext? Surely a massive no-no."
They don't have to store them in plain text, salted hashes will do.
"Doesn't this mean that they are storing previous passwords in plaintext? Surely a massive no-no."
They don't have to store them in plain text, salted hashes will do.