Skip to content

Comment on Updating Your Password on LinkedIn and Other Account Security Best Practices

Comments

This is getting silly now, the hash for my unique strong password was in the list. And there are many others who have stated the same. It should have taken them a whole of 5 minutes to find if these hashes were from their database. It's shameful and shows an utter disrespect for security that they didn't bother salting them (and sha1 really?).

Now it's time for them to own up to the mistake and inform their users, before anyone has anything else compromised.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.