Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You’re right to a point, but there’s a world of difference in ways you can store a password. If their algorithm were a single round of MD5, it’s going to be a lot easier for an attacker to guess a password than if they were using Argon2.

I don’t think LastPass is using MD5, but my point is that their job is to make any master password harder to guess. They’re not doing it.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: