@benhamill Whenever I see a length limit on a password field this tells me one thing "we store your password, not its hash".
@benhamill @deshipu To me, it means the service or software doesn't see the need for better security.
I play #GuildWars2 the enabled years back passwords of up to 100 unicode characters, on top of #2FA. Luv it.
@yahananxie @deshipu See https://crypto.stackexchange.com/questions/24993/is-there-a-way-to-use-bcrypt-with-passwords-longer-than-72-bytes-securely
@yahananxie @deshipu See https://crypto.stackexchange.com/questions/24993/is-there-a-way-to-use-bcrypt-with-passwords-longer-than-72-bytes-securely