560
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
this post was submitted on 26 May 2025
560 points (96.4% liked)
Cybersecurity - Memes
3125 readers
1 users here now
Only the hottest memes in Cybersecurity
founded 2 years ago
MODERATORS
This form can be used to brute force or dictionary guess passwords and infer what they are without a limitation on login attempts. Even if the password has already been invalidated on that service, finding a collision on this service gives you a password that might work on other services for the same email address/username
And waiting for a form submit changes that in what way that cannot also be done on a debounce?