Hacker News new | ask | show | jobs
by f0urtyfive 3572 days ago
Who said the text persists, you could take it off the phone and type it in to compare against any existing salted hash. Still not good security, but not necessarily stored in plaintext.
1 comments

(For the record, yes this is how it worked.)