Salting Passwords in DB or Across the Wire?
One of the sessions at SxSW talked about the importance of salting passwords in the database in case an attacker gains database access. The assertion is that hashing in the database is not enough, that the hash needs to be combined with salt. This got folks (including me) thinking and talking about this again, which is a Good Thing.
Want to have your say? just login


Be first to show your opinion !!!