H
H
Hellas2017-10-31 08:42:55
Passwords
Hellas, 2017-10-31 08:42:55

How to protect the password?

Why is storing a password in a database, in its original form, considered insecure?
Do I understand correctly that password hashing only helps if the database is hacked?

Answer the question

In order to leave comments, you need to log in

1 answer(s)
A
Alexey Ukolov, 2017-10-31
@alexey-m-ukolov

Why is storing a password in a database, in its original form, considered insecure?
Because then no one except the owner of the account can find out the password. Do you agree that this is how it should be?
Do I understand correctly that password hashing only helps if the database is hacked?
And also in the case of an unscrupulous developer, administrator, bugged code, a backup forgotten in public access, a screenshot of the table posted on the Toaster, and so on. One sql injection - and you are the father, as they say.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question