3 ms·
Good point. Let's say, for the sake of argument, that each of them have their own salt :)
by pmylund 15y ago
Good point. Let's say, for the sake of argument, that each of them have their own salt :)
- JoachimSchipper 15y agoAny reasonable password algorithm will have a unique salt for each password (well, a random long salt; you're highly unlikely to have collisions). Dictionary attacks still work.
- pmylund 15y agoRight. The analogy isn't bulletproof, but in conclusion it's pretty dumb to share information that could conceivably be used to extract some information or otherwise get an advantage when there's no reason to.