
PagerDuty’s Security Training for Engineers
Coding Blocks
00:00
Adaptive Hashing
The intent of the algorithm is to slow things down, so that it's not fast. A hundred thousand hash is right, might take a second. Next year, that same hundred thousand hashes might be a fourth of a second. With an emdy five, it was dirt cheap,. Even even with a very long entropy password, an emty five, you could with very with just regular hardware for fairly cheap. If you jump up into this p k d f two implementation, and it's five seconds to do this particular one, that same eight character password would cost somebody 920 thousand dollars using that. That's important distinction here, eight characters, not letters.
Transcript
Play full episode