Beacause a smaller password means a smaller hash. Duh.
-
-
This Tweet is unavailable.
-
-
-
-
Guess here: technical debt of financial institutions. They have business processes running on some old hardware architectures and they never updated their user accounts system since it's inception in the 80s
-
My FinCo just proudly trumpeted upgrades to their site, requiring new password changes: one capital and one special character is now a must for my security!
#luddite_tech - Show replies
New conversation -
-
-
that sort of question you really don't want to know the answer to but i am betting due to not hashing passwords. whenever i see any password limitations, i assume they are not hashing.
-
"20 character limit" ? sql column is 20 characters. "don't use symbols" they don't sanitize inputs or use prepared statements the worst are the password fields that don't allow you to paste from a password manager
- Show replies
New conversation -
-
-
I most annoyed by websites that truncate your password to some arbitrary length prior to hashing and storage, but why not on the (registration) input field? I've seen that only a few times, but more than once.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Web developer, database admin, or manager does not know what they are doing. I don't know who but the idea of changing the database schema on a table filled with user data and taking the site down is scaring the shit out of someone.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.