Hacker News new | ask | show | jobs
by ccouzens 1264 days ago
Hashing passwords reduces the threat from database dumps, but it doesn't help against an attacker uploading a compromised version of the app and siphoning off credentials as they're submitted.