Ask HN: Current Crypto Best Practices
1–10 of 71 posts
Re: Ask HN: Current Crypto Best Practices
#2Re: Ask HN: Current Crypto Best Practices
#3Start at https://www.owasp.org/index.php/Password_Storage_Cheat_Sheet
Re: Ask HN: Current Crypto Best Practices
#4Re: Ask HN: Current Crypto Best Practices
#5The golden rule about storing a password is to not store a password... I can't wait till SQRL takes off
Re: Ask HN: Current Crypto Best Practices
#6The golden rule about storing a password is to not store a password... I can't wait till SQRL takes off
I've also come to realize that one should take everything that SG says with a large table spoon of salt.
Re: Ask HN: Current Crypto Best Practices
#7Re: Ask HN: Current Crypto Best Practices
#8Re: Ask HN: Current Crypto Best Practices
#9Re: Ask HN: Current Crypto Best Practices
#10The golden rule about storing a password is to not store a password... I can't wait till SQRL takes off
It won't. See http://security.blogoverflow.com/2013/10/debunking-sqrl/ for a myriad of reasons. I've also come to realize that one should take everything that SG says with a large table spoon of salt.
That sounds like the same problem password managers have. And yet they are still recommended over (re-)using your own passwords for each website.