home.social

#bcrypt — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #bcrypt, aggregated by home.social.

  1. Phần 6 loạt bài về Hệ thống Quản lý Người dùng bằng JavaFX & MySQL tập trung vào băm mật khẩu an toàn với BCrypt (thay thế lưu trữ dạng văn bản thường). Hướng dẫn thiết thực cho sinh viên, đồ án tốt nghiệp và người học ứng dụng desktop Java. #JavaFX #BCrypt #PasswordSecurity #JavaProgramming #HệThốngQuảnLýNgườiDùng #MậtKhẩuAnToàn

    reddit.com/r/programming/comme

  2. JavaFX & MySQL: Hệ thống Quản lý Người dùng - Mã hóa Mật khẩu BCrypt (Phần 6) 🖥️
    Hệ thống Quản lý Người dùng hoàn chỉnh trong JavaFX & MySQL. Hướng dẫn mã hóa mật khẩu an toàn bằng BCrypt thay vì lưu trữ văn bản thông thường.
    Tuyệt vời cho sinh viên, dự án cuối kỳ hoặc ai học lập trình JavaFX. Phần 6: youtu.be/LDD1Kan7tOI
    #JavaFX #MySQL #BCrypt #QuanLyNguoiDung #LapTrinhJava
    Phản hồi và góp ý được hoan nghênh! Cảm ơn!

    reddit.com/r/programming/comme

  3. Since Wordpress v6.8, the default hash func produces a custom bcrypt hash: $wp$2y$10$...

    More info on this custom algo, how it uses hmac-sha384, and how to crack them with hashcat.

    forum.hashpwn.net/post/4205

    #wordpress #bcrypt #wpbcrypt #hashcracking #hashpwn #hashgen #hashcat

  4. Since Wordpress v6.8, the default hash func produces a custom bcrypt hash: $wp$2y$10$...

    More info on this custom algo, how it uses hmac-sha384, and how to crack them with hashcat.

    forum.hashpwn.net/post/4205

    #wordpress #bcrypt #wpbcrypt #hashcracking #hashpwn #hashgen #hashcat

  5. Since Wordpress v6.8, the default hash func produces a custom bcrypt hash: $wp$2y$10$...

    More info on this custom algo, how it uses hmac-sha384, and how to crack them with hashcat.

    forum.hashpwn.net/post/4205

    #wordpress #bcrypt #wpbcrypt #hashcracking #hashpwn #hashgen #hashcat

  6. Since Wordpress v6.8, the default hash func produces a custom bcrypt hash: $wp$2y$10$...

    More info on this custom algo, how it uses hmac-sha384, and how to crack them with hashcat.

    forum.hashpwn.net/post/4205

    #wordpress #bcrypt #wpbcrypt #hashcracking #hashpwn #hashgen #hashcat

  7. Since Wordpress v6.8, the default hash func produces a custom bcrypt hash: $wp$2y$10$...

    More info on this custom algo, how it uses hmac-sha384, and how to crack them with hashcat.

    forum.hashpwn.net/post/4205

    #wordpress #bcrypt #wpbcrypt #hashcracking #hashpwn #hashgen #hashcat

  8. Hoy aprendí sobre el algoritmo de hash #bcrypt, basado en el cifrador de bloques #Blowfish, revisando un artículo de @andrea_navarro sobre extensiones de #Flask... particularmente sobre las extensiones de seguridad.

    Y acabo de descubrir que es uno de los algoritmos soportados para la creación de passwords en GNU/Linux :D

    Habrá que hacer algunos experimentos.

    #gnu #linux #cryptography #criptografía #ciberseguridad #infosec #encrypt #hash #python #flask

  9. Hoy aprendí sobre el algoritmo de hash #bcrypt, basado en el cifrador de bloques #Blowfish, revisando un artículo de @andrea_navarro sobre extensiones de #Flask... particularmente sobre las extensiones de seguridad.

    Y acabo de descubrir que es uno de los algoritmos soportados para la creación de passwords en GNU/Linux :D

    Habrá que hacer algunos experimentos.

    #gnu #linux #cryptography #criptografía #ciberseguridad #infosec #encrypt #hash #python #flask

  10. Hoy aprendí sobre el algoritmo de hash #bcrypt, basado en el cifrador de bloques #Blowfish, revisando un artículo de @andrea_navarro sobre extensiones de #Flask... particularmente sobre las extensiones de seguridad.

    Y acabo de descubrir que es uno de los algoritmos soportados para la creación de passwords en GNU/Linux :D

    Habrá que hacer algunos experimentos.

    #gnu #linux #cryptography #criptografía #ciberseguridad #infosec #encrypt #hash #python #flask

  11. Hoy aprendí sobre el algoritmo de hash #bcrypt, basado en el cifrador de bloques #Blowfish, revisando un artículo de @andrea_navarro sobre extensiones de #Flask... particularmente sobre las extensiones de seguridad.

    Y acabo de descubrir que es uno de los algoritmos soportados para la creación de passwords en GNU/Linux :D

    Habrá que hacer algunos experimentos.

    #gnu #linux #cryptography #criptografía #ciberseguridad #infosec #encrypt #hash #python #flask

  12. Hoy aprendí sobre el algoritmo de hash #bcrypt, basado en el cifrador de bloques #Blowfish, revisando un artículo de @andrea_navarro sobre extensiones de #Flask... particularmente sobre las extensiones de seguridad.

    Y acabo de descubrir que es uno de los algoritmos soportados para la creación de passwords en GNU/Linux :D

    Habrá que hacer algunos experimentos.

    #gnu #linux #cryptography #criptografía #ciberseguridad #infosec #encrypt #hash #python #flask

  13. #4 👥 Leverage built-in authentication with #Breeze, #Fortify or #Jetstream
    🗝️ Store passwords securely using #Bcrypt or #Argon2 hashing algorithms
    🔑 Secure environment variables and force #HTTPS in production environments

  14. #4 👥 Leverage built-in authentication with #Breeze, #Fortify or #Jetstream
    🗝️ Store passwords securely using #Bcrypt or #Argon2 hashing algorithms
    🔑 Secure environment variables and force #HTTPS in production environments

  15. #4 👥 Leverage built-in authentication with #Breeze, #Fortify or #Jetstream
    🗝️ Store passwords securely using #Bcrypt or #Argon2 hashing algorithms
    🔑 Secure environment variables and force #HTTPS in production environments

  16. #4 👥 Leverage built-in authentication with #Breeze, #Fortify or #Jetstream
    🗝️ Store passwords securely using #Bcrypt or #Argon2 hashing algorithms
    🔑 Secure environment variables and force #HTTPS in production environments

  17. #4 👥 Leverage built-in authentication with #Breeze, #Fortify or #Jetstream
    🗝️ Store passwords securely using #Bcrypt or #Argon2 hashing algorithms
    🔑 Secure environment variables and force #HTTPS in production environments

  18. @thinkberg this page is gold. Pitty that the #bcrypt one doesn't have a reference

  19. @thinkberg this page is gold. Pitty that the #bcrypt one doesn't have a reference

  20. @thinkberg this page is gold. Pitty that the #bcrypt one doesn't have a reference

  21. @thinkberg this page is gold. Pitty that the #bcrypt one doesn't have a reference

  22. @thinkberg this page is gold. Pitty that the #bcrypt one doesn't have a reference

  23. This is... interesting. Apparently bcrypt truncates user provided passwords at 72 byte marker. I guess one way can be to "prehash" the password with a HMAC as suggested here:

    soatok.blog/2024/11/27/beyond-

    The other (simpler) approach would be to, like Go's x/crypto/bcrypt, just reject all user provided passwords > 72 bytes. It is not *great*, but it works and fails "safe". Now one wonders *why* this is not the default behavior of PHP's password_hash function...

    #password #bcrypt #php

  24. This is... interesting. Apparently bcrypt truncates user provided passwords at 72 byte marker. I guess one way can be to "prehash" the password with a HMAC as suggested here:

    soatok.blog/2024/11/27/beyond-

    The other (simpler) approach would be to, like Go's x/crypto/bcrypt, just reject all user provided passwords > 72 bytes. It is not *great*, but it works and fails "safe". Now one wonders *why* this is not the default behavior of PHP's password_hash function...

    #password #bcrypt #php

  25. This is... interesting. Apparently bcrypt truncates user provided passwords at 72 byte marker. I guess one way can be to "prehash" the password with a HMAC as suggested here:

    soatok.blog/2024/11/27/beyond-

    The other (simpler) approach would be to, like Go's x/crypto/bcrypt, just reject all user provided passwords > 72 bytes. It is not *great*, but it works and fails "safe". Now one wonders *why* this is not the default behavior of PHP's password_hash function...

    #password #bcrypt #php

  26. This is... interesting. Apparently bcrypt truncates user provided passwords at 72 byte marker. I guess one way can be to "prehash" the password with a HMAC as suggested here:

    soatok.blog/2024/11/27/beyond-

    The other (simpler) approach would be to, like Go's x/crypto/bcrypt, just reject all user provided passwords > 72 bytes. It is not *great*, but it works and fails "safe". Now one wonders *why* this is not the default behavior of PHP's password_hash function...

    #password #bcrypt #php

  27. This is... interesting. Apparently bcrypt truncates user provided passwords at 72 byte marker. I guess one way can be to "prehash" the password with a HMAC as suggested here:

    soatok.blog/2024/11/27/beyond-

    The other (simpler) approach would be to, like Go's x/crypto/bcrypt, just reject all user provided passwords > 72 bytes. It is not *great*, but it works and fails "safe". Now one wonders *why* this is not the default behavior of PHP's password_hash function...

    #password #bcrypt #php

  28. #TalesFromSupport

    "Hallo, ich habe mein Passwort vergessen. Könnt ihr mir mein altes zuschicken?"

    Nein. Und das ist auch gut so. 😅

    #Passwort #Hash #bcrypt

  29. #TalesFromSupport

    "Hallo, ich habe mein Passwort vergessen. Könnt ihr mir mein altes zuschicken?"

    Nein. Und das ist auch gut so. 😅

    #Passwort #Hash #bcrypt

  30. #TalesFromSupport

    "Hallo, ich habe mein Passwort vergessen. Könnt ihr mir mein altes zuschicken?"

    Nein. Und das ist auch gut so. 😅

    #Passwort #Hash #bcrypt

  31. #TalesFromSupport

    "Hallo, ich habe mein Passwort vergessen. Könnt ihr mir mein altes zuschicken?"

    Nein. Und das ist auch gut so. 😅

    #Passwort #Hash #bcrypt

  32. #TalesFromSupport

    "Hallo, ich habe mein Passwort vergessen. Könnt ihr mir mein altes zuschicken?"

    Nein. Und das ist auch gut so. 😅

    #Passwort #Hash #bcrypt

  33. „The #bcrypt password hashing function should only be used for password storage in legacy systems where #Argon2 and scrypt are not available.“
    cheatsheetseries.owasp.org/che #security #owasp

  34. „The #bcrypt password hashing function should only be used for password storage in legacy systems where #Argon2 and scrypt are not available.“
    cheatsheetseries.owasp.org/che #security #owasp

  35. „The #bcrypt password hashing function should only be used for password storage in legacy systems where #Argon2 and scrypt are not available.“
    cheatsheetseries.owasp.org/che #security #owasp

  36. „The #bcrypt password hashing function should only be used for password storage in legacy systems where #Argon2 and scrypt are not available.“
    cheatsheetseries.owasp.org/che #security #owasp

  37. „The #bcrypt password hashing function should only be used for password storage in legacy systems where #Argon2 and scrypt are not available.“
    cheatsheetseries.owasp.org/che #security #owasp