3 ms·
There's half a billion hashes. I don't see how anybody could crack them "reasonably quickly".
by SquareWheel 9y ago
There's half a billion hashes. I don't see how anybody could crack them "reasonably quickly".
- ChrisSD 9y agoMost of them will be known already. It's mostly just a matter of comparing hashes or at worst converting plaintext SHA-1 (which is designed to be very fast). And crackers will share unknown hashes to be cracked. So they can crowd source cracking far more effectively than the security community can.
- petee 9y agoIn addition, the list isn't connected with any specific accounts* - even if you broke the whole list (which it essentially is already, anyway) someone would have to match each one to some rando account. Not likely. *unless you have the original breach, then we are back at zero: its already compromised.
- ChrisSD 9y agoWell exactly. It's of minimal (if any) use to crackers. But analysing cracked passwords could be of use for research.
- 3pt14159 9y ago500m salt-free hashes just mean your odds of getting a hit per hash go way, way, way up. Around one in 2.9e39 instead of 1.5e48.