This is Dcaunt's TypePad Profile.
Join TypePad and start following Dcaunt's activity
Dcaunt
Recent Activity
Great article, all of which I agree with. I'm more than happy to use Twitter to trivial logins, and I'll stick to a unique password for each of my bank accounts. It is safer and it is more convenient.
With regard to point 1, and this may not be correct, I believe that both the full database and the source code were compromised. If this is the case, then salts are of little use. I do advocate the use of both a database-stored salt and an application (source code) salt, however, so that if the database is compromised, password hashes (with their salts) are still secure.
In the case of Gawker too many mistakes were made.
The Dirty Truth About Web Passwords
This weekend, the Gawker network was compromised. This weekend we discovered that Gawker Media's servers were compromised, resulting in a security breach at Lifehacker, Gizmodo, Gawker, Jezebel, io9, Jalopnik, Kotaku, Deadspin, and Fleshbot. If you're a commenter on any of our sites, you prob...
Dcaunt is now following The Typepad Team
Dec 14, 2010
Subscribe to Dcaunt’s Recent Activity
