• fxomt@lemm.ee
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 day ago

    I know about them but I haven’t experienced it yet. Hope I never will though.

      • fxomt@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 day ago

        You wouldn’t. You’d have to find out yourself after not being able to log in despite you being 100% sure that your password is correct :/

        • amorpheus@lemmy.world
          link
          fedilink
          English
          arrow-up
          2
          ·
          edit-2
          1 day ago

          No, that’s the point, you’d never know whether they only validate a subset of the password. Only by testing different variations you would know that less than the whole string still works.

          • fxomt@lemm.ee
            link
            fedilink
            English
            arrow-up
            1
            ·
            1 day ago

            It’s a common enough to safely assume i’d guess. I’ve heard many users complain about it despite not me experiencing it myself. They probably didn’t try every single variation of the password but maybe it’s an infamous bug for many services?

            • amorpheus@lemmy.world
              link
              fedilink
              English
              arrow-up
              2
              ·
              1 day ago

              I wouldn’t speculate on how common it is but limiting passwords seems to happen more than it should. So maybe many are taking the stealth approach.

              One site I know where this happens (at least I experienced it some years ago) was Blizzard. Found out by sheer luck after I clearly fumbled the end of my password and was logged in regardless.

              • fxomt@lemm.ee
                link
                fedilink
                English
                arrow-up
                1
                ·
                1 day ago

                Jesus, worth $60 billion, and can’t even store passwords properly? lmao

                I wouldn’t know whether to feel relieved after the panic of realizing not being able to log in, or being disappointed of how shit the code is lol