Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Nothing like asinine password requirements, with frequent rotations. Especially if it has absurdly low login failure counts before the account is locked and requires manual intervention.

Some services it's easier to just bag their authentication and use the "forgot my password" method every time like a one-time code. Especially if it a rarely used service.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: