This is Christophe-Marie Duquesne's TypePad Profile.
Join TypePad and start following Christophe-Marie Duquesne's activity
Christophe-Marie Duquesne
Recent Activity
There is a solution to this, user side. You can _easily_ use a different password for each site, without the need to remember them, without storing them. Really.
The idea is to hash+salt your password on the client side, on the fly (with a deterministic salt that depends on the site you visit). Instead of entering a password directly in the password field, you can install a bookmarklet/extension that takes you password, processes it through the salt+hash and fills the password input for you.
This way you don't have to trust every webmaster of every sites you visit, since you send them a different password for a different url.
A few extensions/bookmarklets implement this (but don't use the bookmarklets, it is not really secure):
- password hasher
- hash a pass
- supergenpass
The Dirty Truth About Web Passwords
This weekend, the Gawker network was compromised. This weekend we discovered that Gawker Media's servers were compromised, resulting in a security breach at Lifehacker, Gizmodo, Gawker, Jezebel, io9, Jalopnik, Kotaku, Deadspin, and Fleshbot. If you're a commenter on any of our sites, you prob...
Christophe-Marie Duquesne is now following The Typepad Team
Dec 14, 2010
Subscribe to Christophe-Marie Duquesne’s Recent Activity
