Hacker News new | ask | show | jobs
by TheSoftwareGuy 3644 days ago
Isn't the salt not necessarily supposed to be impossible for the attacker to find out though? like isn't it usually like the username, since it needs to be different for each user but not impossible for the server to figure out?