Hacker News new | ask | show | jobs
by entuno 741 days ago
Not to mention that they're using MD5, people have been recommending against for over a decade.

For the Bcrypt results waswas "99 years" even for an 8 character password (and with a work factor of 5, compared to the default of 10 in most libraries) - but that doesn't make for a a very good clickbaity headline, so they don't really talk about it.