View Single Post
  #2  
Old 05-09-2012, 10:39 PM
cbk1994 cbk1994 is offline
the fake one
cbk1994's Avatar
Join Date: Mar 2003
Location: San Francisco
Posts: 10,718
cbk1994 has a reputation beyond reputecbk1994 has a reputation beyond reputecbk1994 has a reputation beyond reputecbk1994 has a reputation beyond reputecbk1994 has a reputation beyond reputecbk1994 has a reputation beyond reputecbk1994 has a reputation beyond reputecbk1994 has a reputation beyond reputecbk1994 has a reputation beyond reputecbk1994 has a reputation beyond repute
Send a message via AIM to cbk1994
While we're at it, let's fix this:

Quote:
Passwords stored on third-party Graal-related websites or databases should be properly encrypted and obfuscated enough so that the hash cannot be decrypted.
Right idea, wrong word. Encryption and hashing are totally different ideas. Passwords should not be encrypted at all.

How about...

Quote:
Passwords stored on third-party Graal-related websites or databases should be hashed using cryptographically strong hash functions.
__________________

Last edited by cbk1994; 05-09-2012 at 10:54 PM..
Reply With Quote