Ranter
Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
Comments
-
Don't know what PBKDF2 ist but it sounds secure.
Also, why the fuck would they use md5?
I don't need sleep, I need answers. -
fuckwit12185y@Ranchu so you can give them their password back when they loose it. Duh
This reminds me of old times.
Minecraft servers that were open for cracked people usually had an in game password prompt. Young me thought It would work to lure the admin to my own server which had the same plugin but I changed the hashing algo to md5. Well he fell for it and signed on with the same credentials he used on his server where he was admin.
This was all before minecraft introduced uuids for players so I could easily change my name and use his pw to gain admin rights on the server.
I didn't do any harm there. We had an argument about how secure that login is and he challenged me to gain access to his account. :D -
fuckwit12185y@PublicByte really that exists? Wow I stopped actively playing at around 1.6. Not sure when they introduced me the UUIDs though.
How easy is it to spoof an uuid? I doubt this works on servers that only allow legit accounts. -
hjk10157315y@Ranchu you probably have seen it in WiFi settings of your router. But yeah it's had to find less secure hashing algorithms than MD5 especially unsalted it's like pain text
Related Rants
Developers overwrote default password storage alghoritm PBKDF2 to MD5.
rant
security