[wp-testers] Wordpress Google MD5 hash crack

Pål GD paal at drange.net
Wed Nov 21 13:45:10 GMT 2007


Cornell Finch wrote:
> I know this probably isn't the right place to put this but I don't 
> know where else to submit it:
>
> http://www.theregister.co.uk/2007/11/21/google_md5_crack/
>
> Is this something we should be worried about?
>
> Collin
Yes, indeed. Wordpress should have been doing salting[1], which I don't 
think they do.

[1] http://en.wikipedia.org/wiki/Salting_(cryptography)


More information about the wp-testers mailing list