Password Hashing
0 characters
Fast (4)
Recommended (10-12)
Secure (15)
Generated Bcrypt Hash
Algorithm
-
Cost Factor
-
Salt Length
-
Hash Length
-
Hash Verification
Performance Benchmarking
Hashing Performance
Last Hash Time:
-
Average Time:
-
Hashes Generated:
0
Cost Factor Analysis
Security Guidelines
Cost Factor Recommendations:
4-6:
Development/Testing only
8-10:
Minimum production (fast servers)
12:
Recommended for most applications
13-15:
High security applications
Best Practices:
- • Use cost factor 12 or higher for production
- • Test performance on your target hardware
- • Consider user experience (max 1-2 seconds)
- • Store full hash including salt and cost
- • Never implement your own bcrypt algorithm
- • Regularly update cost factor as hardware improves
Batch Password Hashing
Processing passwords...
0%
About Bcrypt
What is Bcrypt?
Bcrypt is a password hashing function designed by Niels Provos and David Mazières, based on the Blowfish cipher. It's specifically designed to be slow and computationally expensive to resist brute-force attacks.
Key Features:
- • Adaptive cost parameter
- • Built-in salt generation
- • Resistant to rainbow table attacks
- • Time-tested and widely adopted
Hash Format:
$2a$12$R9h/cIPz0gi.URNNX3kh2OPST9/PgBkqquzi.Ss7KIUgO2t0jWMUW
$2a$ - Algorithm identifier
12$ - Cost factor (2^12 = 4,096 rounds)
R9h/cIPz0gi.URNNX3kh2O - 22-character salt
PST9/PgBkqquzi.Ss7KIUgO2t0jWMUW - 31-character hash