[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-disclosure] password hash, funny myth in the industry!



On Wed, 17 Oct 2007 14:39:28 +0300, upb said:

> this would effectively make the password hash the password.
> Are you sure this scheme is used?:P

Far too often.  I'm continually amazed at how shallow the talent pool for
web developers is. There's 140+ million registered domains, there's nowhere
near that many clued web developers.  Do the math. :)

Attachment: pgppSElr1wVxs.pgp
Description: PGP signature

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/