Home » Technology » Retraction -bcrypt Insecure for Encryption

Recent Comments

    Copyright 2013 Christopher D. Whittum, M.Ed.

    Retraction -bcrypt Insecure for Encryption

    In February 2015, I wrote an article on an encryption program that runs from the Linux terminal -bcrypt.  I am retracting this endorsement, as bcrypt has been found to be an insecure means of encryption due to vulnerabilities.  In lieu of bcrypt, I would recommend scrypt, which also runs from the terminal as well and is secure.  For more information on scrypt, read the scrypt man page.

    For further reading about bcrypt’s vulnerabilities, you can read an article from the Hacker News, here.

    energize education,bcrypt retraction,scrypt,energize education through open source
    Scrypt encrypting my passwords020917.txt file.