In this paper, we present a password stretching method using user specific salts. Our scheme takes similar time to stretch a password as recent password stretching algorithms, but the complexity of a pre-computation attack increases by 108 times and the storage required to store the pre-computation result increases by 108 times. Categories and Subject Descriptors K.6.5 [Security and Protection]: Authentication General Terms Security Keywords Phishing, Password stretching, user-specific salting.