Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The first thing that came to my mind was: god, these are horrible passwords.


Well, have you ever not thought that after a password leak?


Makes me wonder if the responsible thing to do when running a web service is to constantly dictionary-attack and brute-force your own server, and whenever it gets a hit, email the user and force a password change. In theory, the userbase would evolve towards better passwords over time.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: