Question: Imagine there is another value, called the pepper value (as opposed to the salt value) prepended to the salt and password before computing the cryptographic
Imagine there is another value, called the pepper value (as opposed to the salt value) prepended to the salt and password before computing the cryptographic hash. However, unlike the salt, this pepper value is never stored; it is randomly generated at the same time as the salt, but discarded. This means the pepper value must be re-discovered via brute force with every authentication attempt. Describe the impacts on security and usability when the pepper length is a) 1 byte and b) 16 bytes.
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
