Board Thread:General Discussion/@comment-24739709-20151026190758/@comment-166269-20151102212025

PedroM wrote: Do you trust admins? The real question is, do you trust that the person who currently has access to the admin account is the person who actually owns the account. In the first of the recent security breaches, it was a compromised admin account, not a rogue admin, that was used to compromise the staff account.

Even ignoring the question of whether you should automatically trust any admin on whatever random wiki you might find yourself viewing (you shouldn't, by the way, considering that virtually anyone can create a new wiki, or adopt an existing, inactive wiki, and in the process automatically gain admin rights (to say nothing of using social engineering and the like on active wikis to be made an admin)), there is no way for you to confirm that the person currently using an account is the same person that registered it, or that the controller isn't malicious and is competent.