Brute force protection

@memes

  • TORFdot0@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    7 months ago

    If they had the password right the first try, that isn’t a brute force attack, thats a credential leak.

    • winterayars@sh.itjust.works
      link
      fedilink
      arrow-up
      1
      ·
      7 months ago

      It should be that it rejects the password the first time it’s entered correctly but accepts it on every subsequent try. That actually would provide some protection against like dictionary attacks and raw brute force attacks.