Encrypted password storage

  • 878 views
Uploaded on

IVT Tech Talk by Jonathan Oxer in November 2007. Covers use of hashed passwords in web applications and outlines a method to progressively migrate from plain-text to hashed storage. More information …

IVT Tech Talk by Jonathan Oxer in November 2007. Covers use of hashed passwords in web applications and outlines a method to progressively migrate from plain-text to hashed storage. More information at http://jon.oxer.com.au/talks/id/90

More in: Technology , Business
  • Full Name Full Name Comment goes here.
    Are you sure you want to
    Your message goes here
    Be the first to comment
No Downloads

Views

Total Views
878
On Slideshare
0
From Embeds
0
Number of Embeds
1

Actions

Shares
Downloads
24
Comments
0
Likes
1

Embeds 0

No embeds

Report content

Flagged as inappropriate Flag as inappropriate
Flag as inappropriate

Select your reason for flagging this presentation as inappropriate.

Cancel
    No notes for slide

Transcript

  • 1. Secure Password Storage in SiteBuilder Jonathan Oxer November 1st, 2007 Internet Vision Technologies Melbourne, Victoria, AU
  • 2. 18cf7f57ff36142a4 73acdce6e602b03 Jonathan Oxer November 1st, 2007 Internet Vision Technologies Melbourne, Victoria, AU
  • 3. “We want to make you aware that media of ours that contained a backup of a portion of the reddit database was stolen recently. We wanted to alert you to the possibility that your username, password, and – in some cases – e-mail address may have been compromised.” Steve Huffman, reddit.com
  • 4. Lesson for site owners: Don't store passwords in plain text
  • 5. Do we really need to know user's passwords?