can't you design your software to prevent brute force logins? i.e. lockout for x seconds if y unsuccessful login attempts are made?
If you can dump the db then (most likely) you also have the credit cards, other information that is useful to you?
This assumes a hacker has a financial motivation.
There are many conceivable attacks that would result in a read-only dump of password hashes. An administrator's account would be useful in such an administration, turning your read-only access to read-write access.
The technique in the article is relevant when one has the hashes and wants the plaintext (and according to some here, still easy to mitigate then) - if you're guessing a web login, different game.