22.02.2013, 14:06
Quote:
|
This is a mod for an 8 year old game, not the freaking CIA! Salting and hashing the pass once is more than enough, in my opinion. Even IF your database ever gets compromised, you'll have more than enough time to inform your players that they should change their password.
|
Do you have any knowledge about passwords?
People usually always use the same password for everything, including SA-MP. If you get a hold of that password, everything the user is registered to could be compromised, even maybe their bank or paypal.
The password is the most valuable piece of information that gets exchanged between client and server, and therefore it must be protected to the full extent.
To be honest, I actually have no idea why some malicious asshole didn't already create a server just to get passwords.


