Hacker News new | past | comments | ask | show | jobs | submit login

Can I preempt a really boring recap of a discussion that happens on HN at least 3 times per fiscal quarter with:

http://news.ycombinator.com/item?id=1091104

Short answer: the acceptable password hashes are bcrypt, scrypt, or PBKDF2. In all likelihood, anything that isn't one of those three gets you in the news for losing passwords when your site gets hacked.




To be more precise, any secure iterated hash using a sufficient number of iterations and a salt.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: