• 2 Vote(s) - 5 Average
  • 1
  • 2
  • 3
  • 4
  • 5
A Proper Way to Store Passwords
#5
(2019-04-30, 07:05 PM)michael@belgium Wrote:
Quote:If any website emails your password back in plain text, then he is surely storing your password as such



Not really.?You can't know that. You could just hash a temporary plain password, save it in the database, and send the plain pass to the user



I think the key word there is "your". It is perfectly fine to send a random temporary password, not the user's original password.
  Reply


Messages In This Thread
A Proper Way to Store Passwords - by Sasino97 - 2019-04-30, 07:50 AM
RE: A Proper Way to Store Passwords - by hiddos - 2019-04-30, 05:42 PM
RE: A Proper Way to Store Passwords - by hual - 2019-05-01, 02:18 PM
RE: A Proper Way to Store Passwords - by Y_Less - 2019-05-01, 09:46 AM
RE: A Proper Way to Store Passwords - by Sasino97 - 2019-05-17, 08:30 AM
RE: A Proper Way to Store Passwords - by Y_Less - 2019-05-02, 09:44 AM
RE: A Proper Way to Store Passwords - by SyS - 2019-05-08, 01:20 PM
RE: A Proper Way to Store Passwords - by Markski - 2019-05-17, 06:47 PM

Forum Jump: