This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Password Storage Cheat Sheet
From OWASP
Revision as of 06:07, 26 August 2011 by Jmanico (talk | contribs) (Created page with "= ACTIVE WORK IN PROGRESS AUGUST 2011 = = Introduction = This article is focused on providing guidance to storing a passwords in order to help prevent password theft. == Pass...")
ACTIVE WORK IN PROGRESS AUGUST 2011
Introduction
This article is focused on providing guidance to storing a passwords in order to help prevent password theft.
Password Storage Rules
- Use a strong hash
- SHA
- bcrypt
- salt
- salt isolation
- hash iteration