Hacker News new | past | comments | ask | show | jobs | submit login

> The passwords in phpBB3.3 use an exceptionally strong and secure method of encryption

I thought passwords were supposed to be hashed, not encrypted. This is bad.




Some people use this term interchangeably. Many layperson's don't know the difference. Although yes, salted and hashed is the way. Encryption means there's a key (which can be compromised) to decrypt it.




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: