Start with Identity
Researcher & Educator

Roger Needham

Professor, University of Cambridge (1935 to 2003) · University of Cambridge (former) · 40+ years in identity
Focus areas
Authentication ProtocolsPassword HashingDistributed Systems
Notable work
  • Co-authored the Needham-Schroeder authentication protocol (1978)
  • Pioneered storing passwords as one-way hashes rather than plaintext
  • Led the Cambridge Computer Laboratory and founded Microsoft Research Cambridge

Bio

Roger Needham (1935 to 2003) led the Cambridge Computer Laboratory and founded Microsoft Research Cambridge. With Michael Schroeder he published "Using Encryption for Authentication in Large Networks of Computers" in 1978, and he is credited with the practice of storing passwords as one-way hashes rather than in recoverable form.

Profile built from public academic and institutional records.

Where their work shows up

Two ideas from one career sit under most of modern identity. Hashing passwords instead of storing them is why a database breach is a serious incident rather than an immediate total compromise, and why the argument today is about which hash and how it is salted rather than whether to hash at all. The authentication protocol became Kerberos. See credential stuffing and infostealer credential harvesting for what happens when the stored form is weak or bypassed.

Built from public information only. This is an independent profile and is not an endorsement by, or affiliation with, the person listed. Corrections: [email protected].