lemmy.net.au
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Hofmaimaier@feddit.org to Programmer Humor@programming.dev · 27 days ago

The mist of the www

feddit.org

message-square
15
fedilink
2

The mist of the www

feddit.org

Hofmaimaier@feddit.org to Programmer Humor@programming.dev · 27 days ago
message-square
15
fedilink
alert-triangle
You must log in or register to comment.
  • Eager Eagle@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    27 days ago

    • AlbertUnruh@feddit.org
      link
      fedilink
      arrow-up
      2
      ·
      27 days ago

      • Eager Eagle@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        edit-2
        27 days ago

        whew

        thankfully they redacted the phone nunber

  • roofuskit@lemmy.world
    link
    fedilink
    English
    arrow-up
    1
    ·
    27 days ago

    Just good security, nothing to see here.

  • rizzothesmall@sh.itjust.works
    link
    fedilink
    arrow-up
    0
    ·
    edit-2
    27 days ago

    Being able to determine if a username is valid without a valid password is a security flaw

    Even something as simple as taking longer to validate the password when the username is a valid one can also lead to user enumeration

    • cactusupyourbutt@lemmy.world
      link
      fedilink
      arrow-up
      2
      ·
      26 days ago

      I keep hearing that, yet the websites will gladly tell you that the username is taken when trying to register

      • meekah@discuss.tchncs.de
        link
        fedilink
        arrow-up
        1
        ·
        26 days ago

        I’d assume the spam protection for signing up is a lot tighter than the one for logging in

      • marius@feddit.org
        link
        fedilink
        arrow-up
        0
        arrow-down
        1
        ·
        26 days ago

        There are also a lot of websites where you first just enter a username and only when that is valid they ask for a password

        • psud@aussie.zone
          link
          fedilink
          English
          arrow-up
          1
          ·
          21 days ago

          Many of those will progress to password even if the user doesn’t exist

        • dbx12@programming.dev
          link
          fedilink
          arrow-up
          0
          ·
          25 days ago

          And this fucks with password managers as they usually expect both fields on the same page.

          • The Ramen Dutchman@ttrpg.network
            link
            fedilink
            arrow-up
            1
            ·
            3 days ago

            Which ones? Both Keeper and KeepassXC will work just fine with it and the latter is FOSS.

  • the_riviera_kid@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    27 days ago

    It’s called security.

    • kryptonianCodeMonkey@lemmy.world
      link
      fedilink
      arrow-up
      1
      ·
      27 days ago

      “Wrong username. Correct password.”

      “Uh… who’s password?”

      • bleistift2@sopuli.xyz
        link
        fedilink
        English
        arrow-up
        1
        ·
        edit-2
        27 days ago

        I don’t know who is password, or why is password, or when is password, but I do know where is password, and it’s out there!

        • Buddahriffic@lemmy.world
          link
          fedilink
          arrow-up
          1
          ·
          27 days ago

          But… how is password? Secure enough?

Programmer Humor@programming.dev

programmer_humor@programming.dev

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !programmer_humor@programming.dev

Welcome to Programmer Humor!

This is a place where you can post jokes, memes, humor, etc. related to programming!

For sharing awful code theres also Programming Horror.

Rules

  • Keep content in english
  • No advertisements
  • Posts must be related to programming or programmer topics
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1.68K users / day
  • 4.38K users / week
  • 5.91K users / month
  • 5.98K users / 6 months
  • 1 local subscriber
  • 31.3K subscribers
  • 217 Posts
  • 1.89K Comments
  • Modlog
  • mods:
  • adr1an@programming.dev
  • Feyter@programming.dev
  • BurningTurtle@programming.dev
  • Pierre-Yves Lapersonne@programming.dev
  • BE: 0.19.9
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org