User Activity

  • Modified a comment on discussion Open Discussion on KeePass

    I beg to differ. Passwords are routinely salted and hashed and will make rainbow table attacks very expensive. By and large FIDO U2F is the superior 2FA scheme. Unlike RFC6238 OATH-TOTP or RFC4226 OATH-HOTP, U2F does not use a shared secret as it relies on public key cryptography. There is nothing to steal on a compromised server - what the remote server stores cannot be used to impersonify you in any way. An attacker needs possession of the physical secure element to complete the challenge-response...

  • Modified a comment on discussion Open Discussion on KeePass

    I beg to differ. Passwords are routinely salted and hashed and will make rainbow table attacks very expensive. By and large FIDO U2F is the superior 2FA scheme. Unlike RFC6238 OATH-TOTP or RFC4226 OATH-HOTP, U2F does not use a shared secret as it relies on public key cryptography. There is nothing to steal on a compromised server - what the remote server stores cannot be used to impersonify you in any way. An attacker needs possession of the physical secure element to complete the challenge-response...

  • Modified a comment on discussion Open Discussion on KeePass

    I beg to differ. Passwords are routinely salted and hashed and will make rainbow table attacks very expensive. By and large FIDO U2F is the superior 2FA scheme. Unlike RFC6238 OATH-TOTP or RFC4226 OATH-HOTP, U2F does not use a shared secret as it relies on public key cryptography. There is nothing to steal on a compromised server - what the remote server stores cannot be used to impersonify you in any way. An attacker needs possession of the physical secure element to complete the challenge-response...

  • Modified a comment on discussion Open Discussion on KeePass

    I beg to differ. Passwords are routinely salted and hashed and will make rainbow table attacks very expensive. By and large FIDO U2F is the superior 2FA scheme. Unlike RFC6238 OATH-TOTP or RFC4226 OATH-HOTP, U2F does not use a shared secret as it relies on public key cryptography. There is nothing to steal on a compromised server - what the remote server stores cannot be used to impersonify you in any way. An attacker needs possession of the physical secure element to complete the challenge-response...

  • Modified a comment on discussion Open Discussion on KeePass

    I beg to differ. Passwords are routinely salted and hashed and will make rainbow table attacks very expensive. By and large FIDO U2F is the superior 2FA scheme. Unlike RFC6238 OATH-TOTP or RFC4226 OATH-HOTP, U2F does not use a shared secret as it relies on public key cryptography. There is nothing to steal on a compromised server - what the remote server stores cannot be used to impersonify you in any way. An attacker needs possession of the physical secure element to complete the remote-challenge...

  • Modified a comment on discussion Open Discussion on KeePass

    I beg to differ. Passwords are routinely salted and hashed and will make rainbow table attacks very expensive. By and large FIDO U2F is the superior 2FA scheme. Unlike RFC6238 OATH-TOTP or RFC4226 OATH-HOTP, U2F does not use a shared secret. There is nothing to steal on a compromised server - what the remote server stores cannot be used to impersonify you in any way. An attacker needs possession of the physical secure element to complete the remote-challenge routine in real time. And there is nothing...

  • Posted a comment on discussion Open Discussion on KeePass

    I beg to differ. Passwords are routinely salted and hashed and will make rainbow table attacks very expensive. By and large FIDO U2F is the superior 2FA scheme. Unlike RFC6238 OATH-TOTP or RFC4226 OATH-HOTP, U2F does not use a shared secret. There is nothing to steal on a compromised server - what the remote server stores cannot be used to impersonify you in any way. An attacker needs the physical secure element. And there is nothing to download or install. Nothing to retype at lofin. The tokens...

  • Modified a comment on discussion Open Discussion on KeePass

    Like Paul said you are not on the right forum. Nevertheless I can give you some general...

View All

Personal Data

Username:
croy1972
Joined:
2017-02-14 16:50:20

Projects

  • No projects to display.

Personal Tools

MongoDB Logo MongoDB