Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Many timing attacks are viable in web applications. But there aren't timing attacks against password hash comparisons, for obvious reasons.


You're right. That was an unfortunate choice of words.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: