logoalt Hacker News

orthoxeroxyesterday at 8:45 AM1 replyview on HN

Yeah, I remember Lotus Notes both showing multiple filler characters per keystroke and showing different keychain pictures based on the hash of what you typed. This way you could also tell you've made a typo before submitting it.


Replies

extraduder_ireyesterday at 6:07 PM

If the hash changes after every character, doesn't that make it possible for someone to determine your password one character at a time if they know what each hash was?

I'm guessing that wasn't in the threat model at the time.

show 2 replies