Hawksmouth needs your help!
Started by flythth


Rate this topic
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5


12 posts in this topic
flythth
Member
***


0
52 posts 3 threads Joined: Oct 2010
18-02-2013, 10:47 PM -
#9
Why don't you just add one value per user? No need to make one for all users plus one for each of them... I'm not sure how much this "double encryption" affects performance V.S. trouble for possible hackers though.

How do you want to avoid one user being targeted? Lets say the hacker targets a root or administrator account, makes two of those tables, cracks the password, changes the SUPERSECRETFIXEDVALUE ^^ and swipes all log files.

Then again is our profile encrypted too (like the e-mail or address)?

 

Oh and is it a good idea to discuss security relevant stuff on a public forum? Or are these informationa every decent hacker would find out by her/himself?

 

I really love this kind of discussions ^^


[Image: boi10qlavfy6wwvye.png]




Messages In This Thread
Hawksmouth needs your help! - by flythth - 16-02-2013, 06:47 PM
Hawksmouth needs your help! - by flythth - 16-02-2013, 06:47 PM
Hawksmouth needs your help! - by flythth - 16-02-2013, 08:32 PM
Hawksmouth needs your help! - by JW-NL - 17-02-2013, 02:05 AM
Hawksmouth needs your help! - by flythth - 17-02-2013, 11:49 AM
Hawksmouth needs your help! - by flythth - 18-02-2013, 10:47 PM
Hawksmouth needs your help! - by flythth - 21-02-2013, 08:22 AM

Forum Jump:


Users browsing this thread: 1 Guest(s)