36 comments
@nixCraft I know I've been toiling in the Sysadmin Mines for too long in my life because I read the code and thought "Heh, that's a neat workaround" 😅 @hdante @nixCraft This seems to be it: https://www.reddit.com/r/ProgrammerHumor/comments/1au0z6f/bruteforceattackprotection/kr0vwsb/ Although it doesn't seem like the artist made a lot like this before @nixCraft oh snap who's crypto is bs tho!? cash is king.. and that racism thing gotta go killed Navalnaya? @nixCraft Hey where did you find my code? But I even wrote a comment spam protector like this with first ten tries and random. @nixCraft I believe something like this was the punchline of a story I read once... Can't think of the details but the villain had his computer set up so that he had to enter the wrong password on the first attempt or it locked him out... @nixCraft The first condition is unnecessary. If you reject all initial attempts as incorrect, why check for correctness? The code basically says that if you don’t input the password correctly at first you don’t get to log in for the whole session. Edit: nvm it actually checks for both being true without negating them. So it always forces the user to input the same password twice @nixCraft "that appears to be related to password validation" The sick MF set it so even if you get the password right, you have to type the password in again, so people who try multiple passwords skip over the real ones, while people who remember the password shit their pants as to whether they forgot their passwords again. @nixCraft I swear some sites have this. Just an hour ago I tried to log into a website using my password manager: incorrect username/password. I went to a different page and hit login there. Got brought to the same login screen, but it let me in just fine this time! |
@nixCraft genuinely evil. I like it.