Identifying and Remediating CWE-328 Reversible One-Way Hash in Django Applications
hackerone.com | vulnerability | #web-security | #python | #django | #cwe-328 | #hashing | #password-storage
Summary
Weak algorithms like MD5, improper salting, and homemade hash functions make Django password hashing reversible, violating CWE-328. Learn to spot the flaws and move to stronger, salted schemes.
- Published
- Collected
Skip to content