logoalt Hacker News

croesyesterday at 8:30 PM1 replyview on HN

Giving away the password length helps attackers to select the easier target.


Replies

JoshTriplettyesterday at 9:18 PM

That's an argument for telling people the strength of their password, and warning them when setting a weak password. It's not an argument for decreasing usability in a fashion that will make people less comfortable typing long, complex passwords.