|
|
|
|
|
by IncRnd
3238 days ago
|
|
> If there was no salt in the database, it looks Tumblr used a secret "pepper" It's absolutely clear that Tumblr did not use a pepper to create the dumped hash values in the article. Multiple users had the same hash, and most of those users had the same password as each other on another site. |
|
Or are you saying that the exact same hash was found in multiple separate database dumps? I didn't see any indication of that in the article.