261
submitted 11 months ago by L4s@lemmy.world to c/technology@lemmy.world

Largest Study of its Kind Shows Outdated Password Practices are Widespread::undefined

you are viewing a single comment's thread
view the rest of the comments
[-] DemBoSain@midwest.social 24 points 11 months ago

I am tired of websites imposing limitations on passwords, but not sharing what those are. I use a password generator, and rarely know if Unicode characters are allowed, if there's a limit on the number of characters, etc.

I've come across websites where dashes "-" are forbidden. My banking website only allows a maximum of 16 characters. Sometimes there's a note below the password box, sometimes they don't tell you until your password fails, and sometimes they don't ever tell you. If I don't know what the restrictions are, I'll end up throwing a cheap password at it until I can find out what's acceptable.

[-] numanair@lemmy.ml 4 points 11 months ago

Sometimes the limits they tell you are wrong. Sometimes they truncate your password without telling you. Sometimes the app has different requirements than the website.

load more comments (3 replies)
this post was submitted on 27 Nov 2023
261 points (97.5% liked)

Technology

59414 readers
1644 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS