Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The real problem is platform support.

Does Argon2 have support for the various platforms that Bitwarden (or other platforms) need? You need support for browser (javascript most likely), iOS, Mac, Windows, and Android at minimum.

On top of that, are the implementations all equal or is one behind in terms of speed or support? You have to have everything else fall to the lowest common denominator. My guess is that that will be browser based implementations.

This is why so many password managers continue to use PBKDF2, because it has widespread support, particularly in browsers. Until Argon2 (or others) have support that matches it, many products won't use it because it brings with it all sorts of issues.



There's a PR for a WASM implementation of Argon2 in the Bitwarden JavaScript Clients Repository




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: