VideoLAN @videolan App Stores were a mistake. Currently, we cannot update VLC on Windows Store, and we cannot update VLC on Android Play Store, without reducing security or dropping a lot of users… For now, iOS App Store still allows us to ship for iOS9, but until when?

Are they?

@Kindness@lemmy.ml
link
fedilink
14
edit-2
5M

deleted by creator

Setting a max password length is sometimes done to prevent ddos attacks. Without it, attackers could just spam 1MB passwords constantly and force the login server to just spend all its cpu time hashing garbage.

That being said, a password limit of under 20 characters probably just means they are just storing passwords in plaintext.

I Cast Fist
link
fedilink
26M

In Brazil, the govt owned lottery site, created around 2015, only accepts passwords with 6 numeric digits. Your password has to be a number between 000000 and 999999. Only somewhat recently (6 months ago or so) they’ve added a 2FA through an email link.

Oh, said lottery is run by the biggest govt owned bank. Chances of people reusing their bank password there are very fucking high.

Absolutely. They are entrenched in their regulations so much that it takes forever to change things.

Years ago, I had an account at an american big4 bank with an 8 character password and was going through and making all my passwords unique. I was changing everything to random strings of 20-30 characters (this isnt the best practice, btw, but still better than 8chars), so when I get to this bank account it capped me at 15chars. I couldnt believe the forced low entropy they gave me for something as vital as a bank account.

I asked them why, and basically they said their system would break with anything over 15chars.

The equivalent of a 20-30 character random password with numbers and characters is a 7-11 word passphrase. Seeing how passphrase generators default to 4-5 words (equivalent to 11-14 characters) what you did isn’t so bad

How many wrong guesses were you allowed before the system would lock your account?

Back then? Who knows

Be your own bank, use monero.

removed by mod

Yes thank you I will have my employer update my direct deposit information now

You’re welcome.

Where is my routing number?

In your wallet. Its called an address and starts with “4” or “8”

My employer says they don’t pay to non FDIC institutions

There are ways around that but it starts to get complicated. There are companies that will take your paycheck in your name and then automatically convert it and send you crypto, But I have never used them, so I don’t know anything more than that.

Show me a legitimate vendor that accepts Monero as payment.

What about something like groceries, oil changes, metro cards, hospital bills, mortgage payments, rent, gym memberships, cash only business, payroll, or anything else that is actually needed by people.

Inatacart gift card, visa or mastercard giftcards, mortgage and hospital bills i dont have a way for, visa giftcards, cash only businesses would benifit greatly due to lower theft risk.

So your solution is to buy back into banking infrastructure at a fee?

It’s a stopgap measure. Eventually, that won’t be needed. So for now, I guess technically yes.

Alright, so monero is good for coffee, maple syrup, and meat bars (?!). I don’t currently eat a lot of any of those things, so I’m not sure how this will help me with my groceries.

That was only one vendor, which is what you asked for. There’s a whole directory of different vendors offering different services at monerica.com.

Looking at the Food & Drink section, it doesn’t look like you can get much more than coffee and meat with monero, so I’m really not sure how you’re supposed to “be your own bank” by using it and still have access to food.

I do it via instacart gift cards. Been doing it that way for over a year.

Dem Bosain
link
fedilink
246M

My bank restricts the length of my password to…16 characters, I think.

Mine only uses a 4-to-6 digit pin as a password, and sms for 2fa

deweydecibel
link
fedilink
86M

Who do you think makes the decisions for a bank?

The person writing the Android app?

Or the person who just wants customers to be able to access the app and use the services?

@soloner@lemmy.world
link
fedilink
4
edit-2
6M

Banks have laws and regulations that they must abide by to secure the access to and information of customer accounts. A security team will surely have to sign off on whatever the app developer or customer experience manager wants to implement.

Banks have laws and regulations that they must abide by

Wait, did i step into an alternate universe? Did i escape the shadow realm? I’m free! I escaped the worst timeline!

How do y’all spell berenstain?

Create a post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

  • 0 users online
  • 57 users / day
  • 383 users / week
  • 1.5K users / month
  • 5.7K users / 6 months
  • 1 subscriber
  • 2.82K Posts
  • 70.9K Comments
  • Modlog