Bananas Development Blog: share your thoughts

Hashing und PHP

Jeder der eine Benutzerdatenbank verwaltet, sollte die Passwörter nicht im Klartext abspeichern.
Sollte ja bekanntlich nun jeder machen.

Es gibt dazu viele verschiedene Methoden und die verschiedensten Herangehensweisen.
Hier ist nun ein Artikel der mehr darüber erklärt und auch sagt was sinnvol ist und was nicht.

Every developer should know that storing any type of password in plain text is the worst possible decision anyone can make in a secure environment. Between security and confidentiality which one will you choose? Nowadays hacking are perform through social engineering or an inside job, by an employee or trusted person. How exactly confident are you towards securing your stuff and confidentiality of your user? Most of us will know that the Reddit suffer from such problem when all their username and password were compromised as their password wasn’t hashed and stored as plain text. And twitter was attacked through social engineering recently. We won’t want this to happen to us right? Therefore, in this article you will get to know some ways to better hash your password in PHP and some ways to improve your security.

Better Hashing Password in PHP

Banana
out.
  • No comments

Enclosing asterisks marks text as bold (*word*), underscore are made via _word_.
Standard emoticons like :-) and ;-) are converted to images.
E-Mail addresses will not be displayed and will only be used for E-Mail notifications.

To prevent automated Bots from commentspamming, please enter the string you see in the image below in the appropriate input box. Your comment will only be submitted if the strings match. Please ensure that your browser supports and accepts cookies, or your comment cannot be verified correctly.
CAPTCHA

Trackbacks / Pingbacks

  • No Trackbacks