Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Please. 16Crack broke these in less than 5 seconds. Plain md5.

05b28d17a7b6e7024b6e5d8cc43a8bf7 = !@#$%^&*()

5f4dcc3b5aa765d61d8327deb882cf99 = password



Yep. But they are hex strings that look like (are) hashes, and that's all I need to make the point. Next time I'll use /dev/urandom for that :)

In a real scenarios, use PBKDF2 or bcrypt!




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: