this post was submitted on 26 May 2025
562 points (96.2% liked)

Cybersecurity - Memes

2856 readers
2 users here now

Only the hottest memes in Cybersecurity

founded 2 years ago
MODERATORS
 
you are viewing a single comment's thread
view the rest of the comments
[โ€“] [email protected] 10 points 2 weeks ago (1 children)

This form can be used to brute force or dictionary guess passwords and infer what they are without a limitation on login attempts. Even if the password has already been invalidated on that service, finding a collision on this service gives you a password that might work on other services for the same email address/username

[โ€“] [email protected] 1 points 2 weeks ago

And waiting for a form submit changes that in what way that cannot also be done on a debounce?