Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
bruce343434
on Sept 7, 2024
|
parent
|
context
|
favorite
| on:
Why Login Security Sucks
The password isn't leaked, a hash of the salted and peppered password is the only thing in the database (+ the salt, and the pepper elsewhere).
cassianoleal
on Sept 7, 2024
[–]
Assuming it's implemented that way. Which is a big assumption.
bruce343434
on Sept 7, 2024
|
parent
[–]
As the main post was written in the voice of a knowledgeable developer picking a login flow, I assumed so indeed.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: