Welcome to Incremental Social! Learn more about this project here!
Check out lemmyverse to find more communities to join from here!

gartheom

@gartheom@lemmy.world

This profile is from a federated server and may be incomplete. Browse more on the original instance.

gartheom ,

Setting a max password length is sometimes done to prevent ddos attacks. Without it, attackers could just spam 1MB passwords constantly and force the login server to just spend all its cpu time hashing garbage.

That being said, a password limit of under 20 characters probably just means they are just storing passwords in plaintext.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • incremental_games
  • meta
  • All magazines