All my passwords are different and this still pisses me off.
Adobe confirms stolen passwords were encrypted, not hashed
11–20 of 112 posts
Re: Adobe confirms stolen passwords were encrypted, not hashed
#12Thanks, CSO Magazine!
Re: Adobe confirms stolen passwords were encrypted, not hashed
#13Re: Adobe confirms stolen passwords were encrypted, not hashed
#14Re: Adobe confirms stolen passwords were encrypted, not hashed
#15Anyone got a link to where one might check for the presence of their own email in this list?
Re: Adobe confirms stolen passwords were encrypted, not hashed
#16Earlier quoted context omitted.
I wouldn't call Photoshop an achievement, it's a hodgepodge of old libraries and bugs at the best of times. Adobe refused to patch a vulnerability in CS5 at one point, telling people to purchase and upgrade to CS6 (US$199) if they wanted to not be vulnerable to malicious code execution. In response to the uproar they eventually backported the patch. [0]: http://www.macworld.com/article/1166779/adobe_will_issue_fre...
Not a constructive comment, sorry, but I couldn't help chuckle reading this. It's beyond ridiculous.
Re: Adobe confirms stolen passwords were encrypted, not hashed
#17Re: Adobe confirms stolen passwords were encrypted, not hashed
#18the top options being bcrypt, scrypt, PBKDF2, or SHA-2 Thanks, CSO Magazine!
Re: Adobe confirms stolen passwords were encrypted, not hashed
#19Re: Adobe confirms stolen passwords were encrypted, not hashed
#20Adobe says that they've followed best practices for password storage and protection for more than a year now... 13 generations of photoshop ...and they're just getting around to this after CS6?
(I ask this as a fairly big fan of bcrypt myself. Somehow I just have the impression that half the peanut gallery comments come from people who literally switched over from md5 hashes yesterday and suddenly feel the need to crow about their great accomplishment.)