"One in 256 times *any* password might get you in" - MySQL authentication disasterWhat if your authentication system itself were at fault? You could have the hardest-to-guess password, salted and hashed thousands of times, and still be at risk.
That's what happened to MySQL and MariaDB.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nakedsecurity.sophos.com&blog=15254721&post=171391&subd=sophosnews&ref=&feed=1" width="1" height="1" /><img src="http://feeds.feedburner.com/~r/nakedsecurity/~4/Z3heiUQphFU" height="1" width="1"/>
Source:
"One in 256 times *any* password might get you in" - MySQL authentication disaster