Comment by worstnerd on 06/05/2019 at 17:27 UTC

51 upvotes, 9 direct replies (showing 9)

View submission: How to keep your Reddit account safe

View parent comment

Yes, we salt and hash all passwords and don't store them in plaintext

Replies

Comment by Meltingteeth at 06/05/2019 at 17:32 UTC

29 upvotes, 6 direct replies

I'm on a low sodium diet, can you please remove the salt from my password? Additionally I've been recommended to reduce my intake of oils, so can I get that password as homefries instead of hash?

Comment by DrWangerBanger at 06/05/2019 at 17:40 UTC

17 upvotes, 3 direct replies

Have you always done this? Did you store passwords in plaintext at some point in the past?

Comment by rsprobo at 06/05/2019 at 17:47 UTC

4 upvotes, 2 direct replies

Do you also pepper them for even more flavor?

Comment by taedrin at 06/05/2019 at 18:31 UTC

2 upvotes, 0 direct replies

Bonus question - have you made sure that plaintext passwords aren't exposed to any logging infrastructure? I believe Facebook recently discovered that they had been accidentally logging plaintext passwords for years.

Comment by vh1classicvapor at 06/05/2019 at 17:28 UTC

4 upvotes, 0 direct replies

Thanks for answering!

Comment by EnlightenedFalcon at 06/05/2019 at 19:02 UTC

3 upvotes, 0 direct replies

I think a lot of Redditors are salty enough already.

Comment by IamHorstSimcoAMA at 06/05/2019 at 18:00 UTC

1 upvotes, 1 direct replies

I'll take mine scattered, smothered and covered thanks.

Comment by Thatfacelesshorror at 06/05/2019 at 17:34 UTC

1 upvotes, 1 direct replies

yea but with what level of salt and what encoding not using an outdated sha256 are we?

Comment by itsbryandude at 06/05/2019 at 23:30 UTC

1 upvotes, 0 direct replies

Then how are our passwords checked?