Hacker News new | ask | show | jobs
by stipes 5548 days ago
Whoops. The protocol you described is actually secure against that, since your login passes the preimage to the server for hashing and then comparison.