Friction

Pain point · Permissions & security · Blocks work

Passwords hashed with unsalted MD5

1 source thread · first seen 2008-07

Summary

The reporter points out that passwords are stored with md5 and no salt, which is considered insecure.

Evidence

Excerpts are copied word for word from the source; follow the link to read it in full.

“What I can see from code is that passwords are hashed with md5, but without a salt”

Report this item