Forum Moderators: open

Message Too Old, No Replies

Pwned Passwords is Now Open Source via the .NET Foundation

         

engine

10:12 am on May 28, 2021 (gmt 0)

WebmasterWorld Administrator 10+ Year Member Top Contributors Of The Month



Troy Hunt confirms that Pwned Passwords is now moving to Open Source via the .NET Foundation.
He said,

  • It's a very simple code base consisting of Azure Storage, a single Azure Function and a Cloudflare worker.
  • It has its own domain, Cloudflare account and Azure services so can easily be picked up and open sourced independently to the rest of HIBP.
  • It's entirely non-commercial without any API costs or Enterprise services like other parts of HIBP (I want community efforts to remain in the community).
  • The data that drives Pwned Passwords is already freely available in the public domain via the downloadable hash sets.


  • He also went on to say, that the FBI will feed Pwned Passwords as is discovers these compromises during its work.
    "And so, the FBI reached out and we began a discussion about what it might look like to provide them with an avenue to feed compromised passwords into HIBP and surface them via the Pwned Passwords feature."

    [troyhunt.com...]