4 ms·
I did not know that Zomato was Indian.. nor am I quite sure why it matters that they are? Breaches are common everywhere and at least these guys (apparently) sa
by fowl2 9y ago
I did not know that Zomato was Indian.. nor am I quite sure why it matters that they are? Breaches are common everywhere and at least these guys (apparently) salt, etc.
- hoodoof 9y agoYes, a little bit of salt on your Zomato makes it much more palatable.
- namanyayg 9y agoPuts the 17m into a more appropriate scale, imo.
- denzil_correa 9y ago> at least these guys (apparently) salt, etc It seems the salt was stored in the database itself. https://twitter.com/sajal_thomas/status/865134165288599553 https://twitter.com/sajal_thomas/status/865134165288599553
- Confiks 9y agoI don't see anything in that Twitter thread indicating where the salt was stored, but salts are actually supposed to be stored next to the password hash. They purely try to prevent precomputation of password hashes by introducing a random value per password, and that works just fine by putting them next to the hash. Today, of course you shouldn't be manually maintaining salts and instead use a proper PBKDF (which indeed uses a salt, which is stored alongside the hash).