Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yes, if you add a (long - at least 32 bit) salt and something like at least 10^9 rounds of MD5 then, yeah, it's probably ok


No. I mean single unsalted MD5. You will not crack a 20-random-char password. You cannot process 2^120 guesses, and MD5 is not broken for this use.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: