Last week, I tried to register for a service and was really surprised by a password limit of 16 characters. Why on earth yould you impose such strict limits? Never heard of correct horse battery staple?

  • @lseif@sopuli.xyz
    link
    fedilink
    09 months ago

    worst i’ve seen is 8 characters. precisely 8 characters, no more no less… it was for a bank …

    • Dwemthy (he/him)
      link
      fedilink
      English
      09 months ago

      A major US bank that I used to use has case insensitive passwords, found that out one day when I noticed caps lock was on after logging in with no trouble

      • @viking@infosec.pub
        link
        fedilink
        19 months ago

        Makes you wonder if they store the password in plain text, or convert to lower key during your first input so it’s at least hashed. I wouldn’t be surprised if it’s not.

      • JackbyDev
        link
        fedilink
        English
        19 months ago

        Whoa whoa whoa, did you use two of the same number in a row? Insecure!

    • @Donkter@lemmy.world
      link
      fedilink
      09 months ago

      The fact that it was a power of 2 makes me suspect lazy coding. That bank didn’t pay its programmers well enough.