1040
submitted 9 months ago by anders@rytter.me to c/memes@lemmy.ml

Brute force protection

@memes

you are viewing a single comment's thread
view the rest of the comments
[-] zalgotext@sh.itjust.works 6 points 9 months ago

It doesn't really even protect against online attacks though. Like, if you're going through a list of known accounts, by definition it won't be any of those accounts' first time logging in, right?

And if you're not going through a list of known accounts, good luck getting anywhere with your attack any time this millennia

[-] Tarquinn2049@lemmy.world 15 points 9 months ago

This would be per session, not lifetime.

[-] kautau@lemmy.world 2 points 9 months ago

This makes it even more cursed

[-] zalgotext@sh.itjust.works 1 points 9 months ago

Function naming could use some work then, it's not obvious that isFirstLoginAttempt would be session-aware.

Sorry, I'll stop being pedantic now

this post was submitted on 13 Mar 2024
1040 points (100.0% liked)

Memes

45901 readers
1005 users here now

Rules:

  1. Be civil and nice.
  2. Try not to excessively repost, as a rule of thumb, wait at least 2 months to do it if you have to.

founded 5 years ago
MODERATORS