"""""A Russian crime billion user name and password combinations and more than 500 million email addresses, security researchers say.
The records, discovered by Hold Security, a firm in Milwaukee, include confidential material gathered from 420,000 websites, including household names, and small Internet sites. Hold Security has a history of uncovering significant hacks, including the theft last year of tens of millions of records from Adobe Systems.
Even Adobe Systems doesn’t encrypt their data, this will hurt their image. There should be some laws which force companies to encrypt customer data, in the end this is damaging the economy more when it occurs - then the time it consumes to add crypto.
If they do encrypt it I bet you it is such a low level encryption that it got solved after weeks/months. If they were using bitcoins encryption however, it would probably take all super computers in the year 2,100 to be able to solve one privatekey hehe.
That is interesting adobe got hacked like that, there should be a law to encrypt at least at a SHA-3 or 4 level or something.
SHA isn's secure enough on its own, it can be brute forved too quickly unless many rounds are used. Password hashing is easy, I use it even in websites that don't need to be secure. That being said, there doesn't need to be a law. There are too many laws already. Users need to avoid using the same password on every site.