• einkorn@feddit.org
    link
    fedilink
    English
    arrow-up
    6
    ·
    1 day ago

    And then there are those services that let you enter arbitrarily long passwords in the registration form but only save something like 16 characters.

    • fxomt@lemm.ee
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 day ago

      I know about them but I haven’t experienced it yet. Hope I never will though.

        • fxomt@lemm.ee
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 day ago

          You wouldn’t. You’d have to find out yourself after not being able to log in despite you being 100% sure that your password is correct :/

          • amorpheus@lemmy.world
            link
            fedilink
            English
            arrow-up
            2
            ·
            edit-2
            1 day ago

            No, that’s the point, you’d never know whether they only validate a subset of the password. Only by testing different variations you would know that less than the whole string still works.

            • fxomt@lemm.ee
              link
              fedilink
              English
              arrow-up
              1
              ·
              1 day ago

              It’s a common enough to safely assume i’d guess. I’ve heard many users complain about it despite not me experiencing it myself. They probably didn’t try every single variation of the password but maybe it’s an infamous bug for many services?

              • amorpheus@lemmy.world
                link
                fedilink
                English
                arrow-up
                2
                ·
                1 day ago

                I wouldn’t speculate on how common it is but limiting passwords seems to happen more than it should. So maybe many are taking the stealth approach.

                One site I know where this happens (at least I experienced it some years ago) was Blizzard. Found out by sheer luck after I clearly fumbled the end of my password and was logged in regardless.

                • fxomt@lemm.ee
                  link
                  fedilink
                  English
                  arrow-up
                  1
                  ·
                  1 day ago

                  Jesus, worth $60 billion, and can’t even store passwords properly? lmao

                  I wouldn’t know whether to feel relieved after the panic of realizing not being able to log in, or being disappointed of how shit the code is lol