<input type="password" maxlength="20"> prevents me from logging into Vanguard
Thread
Unofficial Hacker News client; not affiliated with Y Combinator.
<input type="password" maxlength="20"> prevents me from logging into Vanguard
Unofficial Hacker News client; not affiliated with Y Combinator.
vegetablepotpie · · focus · HN ↗
Finance needs to be held accountable. They’ve skim off far too much wealth for the value they produced.
sippingabonedry · · focus · HN ↗
They provided password requirements which he ignored.
> Finance needs to be held accountable.
Accountable for what, exactly?
nemomarx · · focus · HN ↗
sippingabonedry · · focus · HN ↗
yjftsjthsd-h · · focus · HN ↗
sippingabonedry · · focus · HN ↗
A 20 character password is for all practical purposes mathematically immune to being brute forced.
danaris · · focus · HN ↗
a) when humans generate passwords, they are not perfectly random; they are memorable, which means they often use dictionary words, which are vulnerable to dictionary attacks
b) even if they use moderately good passwords, that can't be broken with the dictionary, there's a high chance of password reuse, and many passwords have already been leaked
c) when password managers generate truly random passwords, they run into exactly the problem in the article
You are so focused on the math of the situation, you ignore the practical realities.