3 ms·
https://github.com/crypto101/book/blob/master/Crypto101.org#modern-attacks-on-weak-password-systems https://github.com/crypto101/book/blob/master/Crypto101.org#
by Recursing 9y ago
https://github.com/crypto101/book/blob/master/Crypto101.org#modern-attacks-on-weak-password-systems https://github.com/crypto101/book/blob/master/Crypto101.org#...
While that was true before GPUs
>To a modern attack, salts quite simply don’t help.
Everybody should really move to key derivation functions (ideally scrypt)
- thisacctforreal 9y agoWhat parameters do you recommend? Is N=14, r=8, p=1 good enough?
- nyxxie 9y agoThe usual answer is to choose the parameters in such a way that targets the largest verification time that your servers can stand. I'm not aware of a recommended minimum value. In general, though, you're making a pretty good choice by choosing bcrypt, and so long as you're using the above you should have far better security as compared to sha*/md5/etc