• kmartburrito@lemmy.world
    link
    fedilink
    arrow-up
    21
    ·
    edit-2
    1 day ago

    That’s why they need a little bit of seasoning. Some salt would do the trick. At least it would help with a dictionary/rainbow table based attack anyway

    • e0qdk@reddthat.com
      link
      fedilink
      arrow-up
      14
      ·
      1 day ago

      Yep, salt. Also, there are much better options than MD5. I used bcrypt in systems I built a while back. There’s also scrypt and argon2, which are newer. (Just be careful that you don’t create a DoS vulnerability while hardening your login system…)