Hacker News new | ask | show | jobs
by detst 5499 days ago
Why not just authenticate against the existing encryption scheme and then encrypt into the new scheme on the next log in?
1 comments

I second this. Storing plaintext passwords seems like a huge liability, especially since you just announced it on a public forum ;)