What technical reasons are there to have low maximum password lengths? Because chimpanzees build websites:http://security.stackexchange.com/a/33471
@troyhunt @matthew_d_green Some broken password hash functions are quadratic time in pw len. So there *is* a security reason to limit.
-
-
@troyhunt@matthew_d_green But even with quadratic time issue, limit should be more like 100 chars, not 8-16.Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.