|
|
|
|
|
by hiccuphippo
2966 days ago
|
|
Instead of trying to hash the password, just use SSL so the whole request is encrypted. But that doesn't fix servers accidentally logging passwords. Maybe there could be a standard way to signal the beginning and end of a password string so logging software can redact that part. |
|