|
You are here |
blog.nparashuram.com | ||
| | | | |
myers.io
|
|
| | | | | Every so often I see posts on Stack Exchange, or Hacker News where someone has figured out that their passwords are being sent to the server and the server can see them! The logic that we see is that if the password is hashed client side, then only the hash needs to be sent to the server, so the server never knows the password. Unfortunately, I sometimes even see this go one step further when people suggest that with this arrangement, HTTPS isnt required. Wrong. | |
| | | | |
www.splitbrain.org
|
|
| | | | | [AI summary] The author recommends the Password Hasher Firefox extension as a tool to generate unique, secure passwords for each website without needing to memorize them. | |
| | | | |
paulefou.com
|
|
| | | | | A comprehensive guide to setting up pass (the standard unix password manager) with browser integration, OTP support, mobile sync, and convenient keyboard ... | |
| | | | |
blog.cynosureprime.com
|
|
| | | Recovered Percent Total 360,213,049 Usable data 359,005,905 355,886,686 99.13% Unique 116,822,086 113,830,176 97% Salted hashes 68... | ||