August 05, 2004
Random Ideas
Every once in a while I feel like a genius. Like today.
Back in my horrible computer security course I dreamed up an idea: a web browser that used the domain name concatenated with what you entered in your password field, performed a hash operation on the new string, and actually sent that as the password. In that way, you could safely use the "same" password (same as typed on your keyboard) for a ton of different websites, and if one of them got compromised and your password stolen, the thief wouldn't be able to break into other sites/services.
It turns out some dudes at Stanford have implemented just that. Now I have to go dig up my notebook where I originally wrote down the idea, just to flaunt it to myself.
What's next, someone implementing a token-based distributed encrypted filesystem? Hopefully not, that's what Karan and I are going to be hammering out starting next week...
| TrackBack






by reid
on March 06, 2011
by reid
on November 23, 2009