Skip to content

Commit

Permalink
Update README.md
Browse files Browse the repository at this point in the history
  • Loading branch information
Peterburnett authored Nov 19, 2019
1 parent 6cdcb02 commit c23125a
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion README.md
Original file line number Diff line number Diff line change
Expand Up @@ -92,7 +92,7 @@ The Australian ISM recommends that users are not able to change their passwords

### Check Password Against Blacklist

IST recommends that passwords are checked against a blacklist of known bad passwords from data breaches. Enabling this control checks the **hash** of the password against the HaveIBeenPwned breached passwords API, and disallows passwords that have been found in any of the catalogued breaches. The API only receives a partial hash so even if haveibeenpwned was compromised your good password hashes haven't been leaked.
NIST recommends that passwords are checked against a blacklist of known bad passwords from data breaches. Enabling this control checks the **hash** of the password against the HaveIBeenPwned breached passwords API, and disallows passwords that have been found in any of the catalogued breaches. The API only receives a partial hash so even if haveibeenpwned was compromised your good password hashes haven't been leaked.

See the full details here:

Expand Down

0 comments on commit c23125a

Please sign in to comment.