this post was submitted on 20 Aug 2024
6 points (100.0% liked)
Cybersecurity - Memes
1964 readers
1 users here now
Only the hottest memes in Cybersecurity
founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Max. 16 characters
(Still remember: if they have a password length limit, they store the password in plain text!)
Why would you say that? Services are able to require special characters, variable casing and numbers. Why would the reqirement of max length of the password cause the storage to succumb to plain text?
Lemmy-UI has a password limit of 60 characters. Does that mean they are storing your password in plain text?
No, that means they don't like DoS attacks.
Does anyone like being on a receiving end of those?
He should have said a short length limit, it's still recommended to have a length limit of some sort (I think 64 is the official recommendation) to prevent people from doing shit like pasting the entire Shrek script as a password (because you KNOW some people will lol)
I think they could also check that length with Javascript in the browser. Dont know, you should ask the devs.