Hacker News new | past | comments | ask | show | jobs | submit login

Correction: passwords are routinely stored in plain text (or reversably encrypted); there are a variety of challenge-response protocols that you can't run if all you have is the hash. It's a tradeoff; what do you care more about, passwords at rest or passwords in motion?



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: