Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The reason they ask is that they have to fill a checkbox that says "no MD5" and of course they're don't know that CRC32 is worse

And to be very fair, a lot of security issues would be caught with basic checkbox ticking. Are you using a salted password hashing function instead of storing passwords in plaintext? Are you using a firewall? Do you follow the principles of least privilege?



Except this is not for password hashing.

Why is this so difficult to grasp.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: