Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's less of a concern about an attacker gaining access to the log files, as it is that passwords should simply not be stored plaintext... anywhere. One doesn't really need to ask "why", it's just good common sense.


I might even go as far as saying that passwords should simply not be stored at all anywhere.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: