When a company says it has suffered an attack that has resulted in hackers accessing its databases, there are some important questions that they should answer. One of them is: how well were you looking after users passwords? If they simply say the passwords were encrypted, that doesnt really put my mind at rest. Instead, what I would like you to explain is what algorithm you used, and whether you salted and hashed the passwords to make it harder for a cracker to brute-force them.”]
Source: https://grahamcluley.com/password-encryption-hashing-shoe-video/

