Hacker News new | ask | show | jobs
by paul_f 2161 days ago
Not trivial. You still have to break in and get /etc/passwd or the equivalent, right? And doesn't creating a unique salt for each client also help significantly?