Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Security

January 13th, 2012, 09:34 GMT · By Eduard Kovacs

BLOG

Why Passwords Should Be Hashed and Not Encrypted

SHARE:

Adjust text size:

Many database administrators believe that by encrypting their customers’ passwords they protect them properly against potential malicious operations, but security expert Javvad Malik reveals that these practices are not the best way to secure a password.

He released a great video in which he demonstrated, in easy terms, the difference between encrypting a password and hashing it.

If encrypted, a password is still accessible to the administrator, which means that if someone obtains administrative rights over a database, he could access the precious string that safeguards the user’s account.

This is why hashing is recommended, preferably using one of the stronger SHA cryptographic hashing family functions and avoiding MD5 which has become increasingly vulnerable to attacks over the past few years.

Furthermore, to make the hash even more unbreakable, system administrators should add salt to it. By adding a different salt to each hash, the password would become extremely hard to crack, making it impossible for cybercriminals to obtain it.
FILED UNDER:
password
MD5
SHA
advisory

TELL US WHAT YOU THINK:

1,046 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Stratfor to Anonymous: The Attempt to Silence Us Failed

Certified Ethical Hacker Ankit Fadia Hacked by TGH

German Federal Police Hacked As a Result of a Family Feud

OpFreePalestine: 700 Websites Defaced by TheHackersArmy

Anonymous Calls Itself ‘New Illuminati’ and Sends Final Message

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM