Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

That's because PBKDF2 is the result of a standards process, and bcrypt is the result of the Unix process (bcrypt is the extaction of OpenBSD's password hash function from the late '90s).


Just to add to that, some common implementations of Bcrypt used by web apps are an extraction from the cracking tool John the Ripper.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: