Providing Free and Editor Tested Downloads

< HOME | MAC | GEEK - WEAR | SHOPPING | SUPPORT FORUM | TOP DOWNLOADS | >
MajorGeeks.com - If your computer could ask you for it, it would.

Admin Tools
All In One
Android
Anti-Spyware
Anti-Virus
Appearance
Back Up
Benchmarking
Bios
Browsers
CD\DVD\Blu-Ray
Covert Ops
Data Recovery
Diagnostics
Drive Cleaners
Drive Utilities
Driver Tools
Drivers
Ergonomics
Firewalls
Game Tweaks
Graphics
Input Device
Internet Tools
Mail Utilities
Memory
Messaging
Microsoft
Misc
Monitoring
Multimedia
Networking
Office Tools
ProcessManagement
Processor
Registry
Security
System Info
Toys
Video
Macintosh
Games
News Archive
- Off Base
- Way Off Base


· USB Drive Letter Manager (USBDLM) 4.7.3.0
· Hornil StylePix 1.12.3.3
· YUMI 0.0.9.6
· BitDefender Free Edition 1.0.15
· Windows Firewall Control 4.0.0.0
· BlueStacks 0.7.12 Beta
· K-Lite Codec Pack Update 9.9.4 Build 20130520
· MediaInfo Lite 0.7.63
· Data Crow 3.10.0
· Trillian 5.3.0.15c

· New? Start Here
· Top Freeware Picks
· Malware Removal
· Compatibility Database
· Geektionary
· Geek Shopping
· Free Magazines
· Useful Links
· Top Freeware Picks
· Folding@Home
· About Us
· Copyright
· Privacy
· Terms Of Service
· Uninstall

There are currently 2316 user(s) online:
Google, Live Search, MSN, Yahoo

YouTube

FaceBook

Twitter

RSS / XML Feed

Pintrest



Follow @majorgeeks
· Google · Yahoo · MSN


1. K-Lite Codec Pack Update
2. IObit SmartDefrag
3. Malwarebytes Anti-Malware
4. Win7codecs
5. IObit Malware Fighter
6. JetClean
7. Windows 8 Codecs
8. SpywareBlaster
9. x64 Components
10. Advanced SystemCare Free 6.2.0.254 (0424)
More >>

What's The Best Browser to Protect You against Malware?

Friday Photo Bombs!

The plane! The plane! Fantasy Island airplane used to smuggle drugs after show finished (Video)

Female fan who flipped off Noah in photo identified as Filomena Tobias

Majorgeeks updates website to new CMS and design – didn’t break EVERYTHING

First time setup and installation of an SSD drive

Friday Photo Bombs!

NASA dumping Windows for Linux

World Of Warcraft loses 1.3 million subscribers in 3 months

Pay attention to the Kiss Cam (Video)





MajorGeeks.com » News » September 2012 » PHP 5.5 should reduce password vulnerability

PHP 5.5 should reduce password vulnerability


Posted on: 09/13/2012 04:47 PM [ Comments ]


Version 5.5 of PHP will come with an API designed to allow administrators and developers to safely store passwords. With its help, developers will be able to use just one line of code to generate a secure salted password hash using bcrypt.

$hash = password_hash($password, PASSWORD_DEFAULT);

A salt is not needed; it will be auto-generated by the API if not present and added as a random component to the password. Verifying the password is equally easy:

password_verify($password, $hash);

Should the generated hashes land in the wrong hands, the thieves should only be able to reconstruct the corresponding plain text passwords with considerable effort, providing of course that the original passwords are long enough. The hash method Bcrypt is one that is very computationally intensive and requires a lot of memory, making it difficult to crack with GPUs. A system with eight CPU cores can generate around 5,000 hashes per second and a current GPU delivers similar results. By comparison, hashing with SHA1 would deliver numbers in the tens of millions.

Through the use of salts, the use of rainbow tables is also limited. If the user wants, the hash function call can not only specify its own salt but also adjust the complexity (cost) of the Bcrypt method or change the hashing method entirely. This information is stored along with the hashed password.

In the past, database extracts from web sites that contain the passwords of users as unsalted hashes or even in plain text have been published on the internet. With the new PHP APIs, administrators and developers should have no more excuses for such sloppiness – it couldn't be much easier. Users who do not want to wait until PHP 5.5 arrives can download the in-development password library.








Like it? Share it....




Comments
comments powered by Disqus

« Nvidia Geforce GTX 660 Reviews Roundup @ NT Compatible · PHP 5.5 should reduce password vulnerability · Microsoft Carries out Nitol Botnet Takedown »

MajorGeeks.com » News » September 2012 » PHP 5.5 should reduce password vulnerability
© 2000-2013 MajorGeeks.com
Powered by Contentteller® Business Edition