• rockSlayer@lemmy.world
    link
    fedilink
    English
    arrow-up
    59
    arrow-down
    1
    ·
    7 days ago

    If you’re talking about have I been pwned, that site is actually legit. They have an API that compares hashes and stuff. I hope this app is legit too, it could save millions of people.

    • Monument@lemmy.sdf.org
      link
      fedilink
      English
      arrow-up
      7
      arrow-down
      4
      ·
      7 days ago

      There’s one by …. Microsoft, I think?

      It actually requests your password (vs email for HaveIBeenPwned) and checks it against rainbow tables. It doesn’t ask for other identifying information, so it’s okay, but feels super sketchy.

          • Wooki@lemmy.world
            link
            fedilink
            English
            arrow-up
            1
            ·
            6 days ago

            MVP is really an employee, they are not aloud to be honest when giving advice that is not in Microsofts best interest. It’s a farce.

        • Monument@lemmy.sdf.org
          link
          fedilink
          English
          arrow-up
          2
          ·
          7 days ago

          Ahh. Interesting. I don’t think I’ve seen the HIBP one!

          Now it’s going to bug me, trying to remember the one I was thinking of. (Unfortunately, I’m out and about today and can’t really take a moment to hunt down what I’d previously seen.)