this post was submitted on 27 Jul 2023
1374 points (98.5% liked)
Memes
45581 readers
1 users here now
Rules:
- Be civil and nice.
- Try not to excessively repost, as a rule of thumb, wait at least 2 months to do it if you have to.
founded 6 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
No you don't need to store anything in clear text to check password parameters
But you need to know previous password if the objective is to make sure there's at least two characters difference compared to new password
No, because password hashes. Read this: https://security.stackexchange.com/questions/139738/company-can-tell-if-new-and-old-passwords-are-too-similar-is-there-a-security-p