Hacker News new | ask | show | jobs
by cespare 3209 days ago
And that unique long pin definitely isn't stored in plaintext in the next column over in their database, right?
3 comments

At least it's only in one database, and not all of them, like SSNs are...
At this point it's about doing that one thing the other 1 million won't. It might be surmountable but do you figure the adversary is going to have the incentive to surmount it?
"don't worry, your 12 digit pin is securely encrypted with md5"

/s

md5? They use triple ROT13.