Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
munctional
on Dec 20, 2009
|
parent
|
context
|
favorite
| on:
Ask HN: Review my App - Freeciv.net
It reduces the keyspace that needs to be searched when bruteforcing... leading to accounts being compromised more easily. That's about it.
Scriptor
on Dec 20, 2009
[–]
At the same time, I think it's just a really quick/lazy way to prevent SQL injection.
akirk
on Dec 20, 2009
|
parent
|
next
[–]
well you have already lost if you try to insert the password into the database without applying a salted hash function on it.
TeHCrAzY
on Dec 21, 2009
|
parent
|
prev
[–]
Don't most "web" languages support parameters in the same was .NET does (at least with Sql Server)?
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: