|
You are here |
blog.daknob.net | ||
| | | | |
ets.wyo.gov
|
|
| | | | | 2023 Cybersecurity Awareness Campaign | |
| | | | |
shazow.net
|
|
| | | | | [AI summary] A guide on how to safely change a password manager's master password by generating high-entropy phrases and testing them for memorization. | |
| | | | |
blog.thenewoil.org
|
|
| | | | | Password managers are thankfully becoming a mainstream topic. In addition to seeing commercials for certain ones from time to time, it's ... | |
| | | | |
myers.io
|
|
| | | Every so often I see posts on Stack Exchange, or Hacker News where someone has figured out that their passwords are being sent to the server and the server can see them! The logic that we see is that if the password is hashed client side, then only the hash needs to be sent to the server, so the server never knows the password. Unfortunately, I sometimes even see this go one step further when people suggest that with this arrangement, HTTPS isnt required. Wrong. | ||