HashMask: A Secure Experiment in Password Masking
Posted on July 26, 2009, under JavaScript,
Bookmark it
HashMask is a JQuery Plugin that produces an unique and a irreversible visualization of a user’s password. The attempt of this application is to find a more secure middle ground between clear and masked passwords. Based on the generated image, users would be able to confirm that they have entered the password correctly, since they are becoming familiar with the image they see every time they type the password.

Technically speaking, it uses a subset of the sha1 hash of the password as the seed for the sparkline’s shape and color. It should be relatively safe from reverse engineering as a result. There is the potential to estimate a possible range of characters of the first section of the hash, but overall this should be a extremely low risk.
- Tested on: Firefox 3, Safari 4 and IE6+
- Source: http://lab.arc90.com/2009/07/hashmask.php
- License: BSD
Do you wish to receive the latest updates as soon as they are posted? Get our RSS Feed or Subscribe to the Newsletter!
- July 26, 2009
- article by Gabriel C.
- Share your thoughts!
Related Posts
-
6 Free Password Strength Meter Scripts – For Secure Registrationsat July 27, 2009 with 2 comments
-
IPhone-like Password Fields: jQuery dPassword Pluginat July 10, 2009
-
Validate (input) passwordat August 30, 2008 with 2 comments
-
How to generate a random password in PHPat August 29, 2008 with 2 comments
-
Create Professional Secure Forms with CAPTCHA, Realtime Validation and PHP Backendat February 8, 2010 with 241 comments
