> Hashed/salted passwords are security theater for geeks.
Ok. Point taken.
So, how to do significantly better than hashed/salted passwords ?
Most frameworks that I'm aware of implement the hashing/salting (and sometimes just the hashing) method as their default method of securing stored passwords.
Is there a much better approach that does not inconvenience the user and that has been widely implemented ?
Once your production server is hacked I would think that pretty much all bets are off.
Especially if someone would manage to get access to either the network stack (where they can monitor the initial attempts at authentication in plaintext).
Just having the hashes for a large number of accounts would allow an attacker to do a whole bunch of mischief 'in their own time' rather than to have to contend with the first line defenses (velocity checks etc) of the website under attack.
edit: on re-reading I think you possibly mean to say with your use of 'security-theater' that you might as well store the passwords in plaintext because after your software has been compromised the passwords are all to be considered 'lost' anyway. But that only deals with the 'front door', not with the back door, in case someone walks out with a copy of the database (such as what happened to Reddit).