It's stupidly fast to rip through simple passwords. 10% were done in 10 seconds. I've got over half of them now, in a couple of hours, while doing other stuff.
These are md5 hashes. I think there are much stronger options and if user passwords weren't all so shit, it'd be slower.
That might be an idea: http://stackoverflow.com/questions/348109/is-double-hashing-a-password-less-secure-than-just-hashing-it-once
It's stupidly fast to rip through simple passwords. 10% were done in 10 seconds. I've got over half of them now, in a couple of hours, while doing other stuff.
These are md5 hashes. I think there are much stronger options and if user passwords weren't all so shit, it'd be slower.