3 ms·
This is way, way too prevalent -- people thinking that by doing more things to the password you are being more secure. The bcrypt algo already salts, there's no
by juliangregorian 11y ago
This is way, way too prevalent -- people thinking that by doing more things to the password you are being more secure. The bcrypt algo already salts, there's no need to prepend extra stuff. And if you really had 80 chars of preliminary table condiments and your bcrypt implementation truncated at 72 -- well that's just textbook.