logoalt Hacker News

Fidelixyesterday at 7:04 PM1 replyview on HN

Did you even check what hash they are using?


Replies

applfanboysbgonyesterday at 8:49 PM

SHA-256. Did you? My point isn't constrained to this exact service, though. My point is that the XKCD-style passphrase is in general not secure. If you make a habit of using it, assuming that the service in question will take care of securing it super duper safely on your behalf, you will get bitten when a service doesn't do this.

show 1 reply