Pages

2009-11-07

Security case study: Hashes for popular router passwords

The full list is here: http://phor.net/PUB/routerpasswords-base64.html

YWRtaW46cGFzc3dvcmQ=admin:password
YWRtaW46UGFzc3dvcmQ=admin:Password
YWRtaW46YWRtaW4=admin:admin
YWRtaW46admin:

So what's the case study result? Don't trust security by obscurity. And always use salt with your hashes.