Password leaks bigger than first thought
h-online.com
Password leaks bigger than first thought
1–10 of 55 posts
Re: Password leaks bigger than first thought
#2Re: Password leaks bigger than first thought
#3Re: Password leaks bigger than first thought
#4Does the number of passwords in the hashed list matter in terms of how easy or hard they will be to crack? Does this have implications for a rainbow table-type attack?
And many of these hashes aren't salted anyway.
Re: Password leaks bigger than first thought
#5I find it really incredible that this companies were so careless. Really. I know that security practices are rare to come by, but come on! LinkedIn, eHarmony and last.fm! These are some of the biggest websites.
We'll see more of these, and bigger ones.
Re: Password leaks bigger than first thought
#6This is truly beautiful - made my day :)
Re: Password leaks bigger than first thought
#7EDIT: Whoops, guess I should have done some napkin math before claiming that there are rainbow tables that cover that area. /me slaps wrist
Re: Password leaks bigger than first thought
#8I find it really incredible that this companies were so careless. Really. I know that security practices are rare to come by, but come on! LinkedIn, eHarmony and last.fm! These are some of the biggest websites.
https://www.owasp.org/index.php/Password_Storage_Cheat_Sheet
Re: Password leaks bigger than first thought
#9Last.fm could have updated this, except it would have meant making all their users do something.
Re: Password leaks bigger than first thought
#10I find it really incredible that this companies were so careless. Really. I know that security practices are rare to come by, but come on! LinkedIn, eHarmony and last.fm! These are some of the biggest websites.
I would be very surprised if this sort of problem is not quite widespread among companies with giant userbases. We'll see more of these, and bigger ones.
These servers are used by governments and large organizations all over the world.