I implemented @troyhunt's HIBP password list as a pure Python3 Bloom filter, in 629MB (false positive rate = 0.0005)https://gist.github.com/marcan/23e1ec416bf884dcd7f0e635ce5f2724 …
Attacker doesn't have to make 10k attacks on "an account". Rather 1M attacks on 1M accounts from 1M botnet nodes. 1 try each, undetectable.
-
-
«undetectable», pronounced just as confident as Oracle saying «unbreakable»? ;-) It may be hard, but still possible to somewhat handle.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.