PDA

View Full Version : Password Hash Change



oops_ur_dead
July 25th, 2013, 05:05 PM
I've changed how the passwords are stored internally. This means that if we are ever hacked, your passwords will be far, far more secure.

Your old password should work. If it doesn't just reset it.

Apocist
July 25th, 2013, 05:22 PM
Out of curiosity, how were the passwords handled before?

oops_ur_dead
July 25th, 2013, 05:37 PM
Used to be MD5(MD5(password).salt)
Now it's MD5(bcrypt(MD5(password).salt))

EDIT: I'm really dumb and wrote hash instead of salt.

powerofdeath
July 25th, 2013, 08:18 PM
Used to be MD5(MD5(password) . hash)
Now it's MD5(bcrypt(MD5(password).hash))

Oh I understand this completely.

Edit: JK but it explains why it logged everyone off

Gingerape
July 25th, 2013, 10:27 PM
Dear God no. My life would be ruined if anyone ever found out my Sc2 Mafia password!!

Thank you Glorious Leader for improving our much needed security <3

Admiral
July 26th, 2013, 03:13 AM
Used to be MD5(MD5(password) . hash)
Now it's MD5(bcrypt(MD5(password).hash))

Do you even Security+?

Nick
July 26th, 2013, 05:15 AM
At least the passwords I hacked are still valid.

Hmm... I wonder if Gingerape is in my list. Lets see...

Duzero
July 26th, 2013, 05:31 AM
I know gingor's password: Blazerf0rev4hXOXO

oops_ur_dead
July 26th, 2013, 08:50 AM
Dear God no. My life would be ruined if anyone ever found out my Sc2 Mafia password!!

Thank you Glorious Leader for improving our much needed security <3

It's more for those people who use the same password on every single site. Which you really shouldn't do but people do it anyway.

Hypersniper
July 26th, 2013, 09:27 AM
ahhh that explains the


Sc2 Mafia site is under temporary maintenance

oops_ur_dead
July 26th, 2013, 10:37 AM
Do you even Security+?

wut?

Ganondorf
July 26th, 2013, 11:56 AM
It's more for those people who use the same password on every single site. Which you really shouldn't do but people do it anyway.
Don't judge -.-

Hypersniper
July 26th, 2013, 04:27 PM
So what I have my password and add a number on if its on a site I use a lot

Burnt Eskimo
July 26th, 2013, 06:35 PM
all my smurfs use the same password.

Helz
July 29th, 2013, 09:52 AM
I one for all the sites I don't particularly care about security so if you hack me feel free to visit my account on BudsGunShop.com and Indiegogo.com

: )

Raptorblaze
July 29th, 2013, 11:43 AM
wut?

It's a CompTIA certification