Czech post uses a minimal block list, with veeeery interesting choices... :-)https://twitter.com/spazef0rze/status/676700855681224704 …
If it ain't broke, I'll fix it!
I'm porting Linux to Apple Silicon Macs at @AsahiLinux.
http://patreon.com/marcan | http://github.com/sponsors/marcan
You can add location information to your Tweets, such as your city or precise location, from the web and via third-party applications. You always have the option to delete your Tweet location history. Learn more
Add this Tweet to your website by copying the code below. Learn more
Add this video to your website by copying the code below. Learn more
By embedding Twitter content in your website or app, you are agreeing to the Twitter Developer Agreement and Developer Policy.
| Country | Code | For customers of |
|---|---|---|
| United States | 40404 | (any) |
| Canada | 21212 | (any) |
| United Kingdom | 86444 | Vodafone, Orange, 3, O2 |
| Brazil | 40404 | Nextel, TIM |
| Haiti | 40404 | Digicel, Voila |
| Ireland | 51210 | Vodafone, O2 |
| India | 53000 | Bharti Airtel, Videocon, Reliance |
| Indonesia | 89887 | AXIS, 3, Telkomsel, Indosat, XL Axiata |
| Italy | 4880804 | Wind |
| 3424486444 | Vodafone | |
| » See SMS short codes for other countries | ||
This timeline is where you’ll spend most of your time, getting instant updates about what matters to you.
Hover over the profile pic and click the Following button to unfollow any account.
When you see a Tweet you love, tap the heart — it lets the person who wrote it know you shared the love.
The fastest way to share someone else’s Tweet with your followers is with a Retweet. Tap the icon to send it instantly.
Add your thoughts about any Tweet with a Reply. Find a topic you’re passionate about, and jump right in.
Get instant insight into what people are talking about now.
Follow more accounts to get instant updates about topics you care about.
See the latest conversations about any topic instantly.
Catch up instantly on the best stories happening as they unfold.
Michal Špaček Retweeted Michal Špaček
Czech post uses a minimal block list, with veeeery interesting choices... :-)https://twitter.com/spazef0rze/status/676700855681224704 …
Michal Špaček added,
Google et al. have 2FA, list of devices, locations. Like you said, other serverside features, which I like a lot, more than a block list.
It's very rare you would choose a secure AND leaked-from-someone-else pwd. Most blocklist hits will be either nonsecure or personal reuse.
The question is: is a block list the right way how to teach users about secure passwords/accounts? Maybe but you block 3 pws & they go away.
It's another tool in the chain. First something like zxcvbn to filter too simple pwds. Then a blocklist to prevent reuse.
With 300M block list you'll probably block anything not generated in a pw manager. I see why Top1(0)k might be a better option. It depends.
You're grossly overestimating the coverage of the 300M set. very_secure_password isn't in it. Try some passwords for yourself and see.
Random non obvious words from the dictionary aren't either. Seriously, it's not that bad. I'm tempted to add /use/share/dict/words to it.
Great :-) Checked some passwords cracked w/ http://crackstation.net dictionary: exoddus Tbvfs1 9plams P1ll3d Neznašov Just the 1st is there.
Ok, so you want the best possible passwords, no matter UX. You HAVE to watch @KluZz speaking at PasswordsCon 2013: https://www.youtube.com/watch?v=aOiMLgPouCU … 
If I were in the "stupid password policies" camp my password rule wouldn't be "anything 6 chars or more goes".
There's a difference between making up stupid password rules and blocking *known* *pwned* passwords.
There is *NO WAY* you can know if a particular pwd has ever been pwned. A list like this from Troy is good, but nowhere close to truth.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.