2 month ago
deusx : Benlog » Don’t Hash Secrets - "So the next time you’re using a hash function on anything, ask yourself: is any of the stuff I’m hashing supposed to stay secret? If so, don’t hash. Instead, use HMAC."
Simon Willison : Don't Hash Secrets - Don’t Hash Secrets. A well written explanation from 2008 of why you must use hmac instead of raw SHA-1 when hashing against a secret.
Jeremy Zawodny : Don’t Hash Secrets - Don’t Hash Secrets: thoughts on when HMAC-SHA1 is better than just SHA1
# copy11 month ago
deusx : Coding Horror: I Just Logged In As You: How It Happened - "The important thing to take away from this, if you're a programmer working on an application that stores user credentials, is to get the hell out of the business of storing user credentials! As we've seen today, the world is full of stupid
# copy
22 month ago
Simon Willison : Geohash for spatial index and search - Geohash for spatial index and search. Nice, clear explanation of what a Geohash is. It’s a way of encoding a lat/lon position as a short string, with the useful property that similar co-ordinates with more or less significant figures share a common pr
bmilleare : Geohash for spatial index and search - Interesting introduction to geohashing. I like the search speed boost this could provide - need to research it more.
# copy
22 month ago
bmilleare : Flexihash - an open source consistent hashing implementation for PHP - super useful for cluster based hosting setups.
# copy
24 month ago
deusx : Working Notes on Consistent Hashing - Laughing Meme - "Nice to see consistent hashing go from obscure to blindingly obvious in a few short whitepapers. "
# copy
24 month ago
Simon Willison : Consistent Hashing - Consistent Hashing. Beautifully clear explanation of consistent hashing, a simple technique that allows you to add new caching servers to a cluster without re-hashing your keys and hence invalidating all of your caches.
deusx : Programmer’s Toolbox Part 3: Consistent Hashing | Spiteful.com - "Consistent hashing is a powerful idea for anyone building services that have to scale across a group of computers."
# copy
31 month ago
gleuschk : Schneier on Security: Stupidest Terrorist Overreaction Yet? - Hashing=terrorism!! ZOMG! save us from the running drunks!
# copy