You are reviewing a system that uses SHA-256 for password ha…
You are reviewing a system that uses SHA-256 for password hashing with salts. The salts are unique but only 4 bytes long. What is the risk in this setup, and what could be improved?
Read Details