[wp-trac] Re: [WordPress Trac] #2394: Passwords are stored in an insecure un-salted form

WordPress Trac wp-trac at lists.automattic.com
Mon Dec 3 17:39:08 GMT 2007


#2394: Passwords are stored in an insecure un-salted form
--------------------------------------------------------------+-------------
 Reporter:  sjmurdoch                                         |        Owner:  pishmishy
     Type:  defect                                            |       Status:  assigned 
 Priority:  normal                                            |    Milestone:  2.4      
Component:  Security                                          |      Version:  2.0      
 Severity:  normal                                            |   Resolution:           
 Keywords:  has-patch salt password md5 phpass needs-testing  |  
--------------------------------------------------------------+-------------
Comment (by ryan):

 BTW, it looks like Drupal will be using phpass in a future release.  Check
 out the discussion here in which the author of phpass explains the
 benefits of phpass.

 http://drupal.org/node/29706

-- 
Ticket URL: <http://trac.wordpress.org/ticket/2394#comment:25>
WordPress Trac <http://trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list