Post #4282096
2026-07-31 13:00 UTC
A password that takes 14 years to crack via brute force is useless to protect you if it's already in a breach database and attackers are using it in credential stuffing attacks.
https://api.cyfluencer.com/s/new-research-does-argon2-mean-your-password-is-uncrackable-28757
Replies (1)
-
@iagox86@infosec.exchange 2026-07-31 14:48
@Javvad@infosec.exchange I tell people over and over: unique is more important than strong. Your password can be as security as you want, but if your Pokemon forum with plaintext passwords gets dumped it doesn't matter Until sites are forced to attest to which password scheme they use, worrying strong password hashing feels exceedingly pointless.