Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

"LastPass strengthens the authentication hash with a random salt and 100,000 rounds of server-side PBKDF2-SHA256, in addition to the rounds performed client-side. This additional strengthening makes it difficult to attack the stolen hashes with any significant speed."

I wouldn't mention that if your data has just been compromised. Although it makes is hard to handle that data, it is more info about how the data is encrypt.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: