3 ms·
LinkedIn could easily match each hash to a user. Then they should lock each of those accounts and force them to change their password.
by kevindication 14y ago
LinkedIn could easily match each hash to a user. Then they should lock each of those accounts and force them to change their password.
- carbocation 14y agoWhich should be done, but which doesn't help those users where it matters most; the real value of this database is that some people (~everyone) reuses passwords across sites.
- kevindication 14y agoAnd send them a note too, sure. They've got their e-mail addresses as well so a note of apology and warning is certainly in order.
- mibbitier 14y agoFrom the looks of it, the data dump may be all accounts - since there seems to be no salt, and many people use same passwords...