this post was submitted on 18 Aug 2024
833 points (98.8% liked)

Cybersecurity - Memes

1975 readers
1 users here now

Only the hottest memes in Cybersecurity

founded 1 year ago
MODERATORS
833
submitted 3 months ago* (last edited 3 months ago) by cron to c/cybersecuritymemes@lemmy.world
 

Last week, I tried to register for a service and was really surprised by a password limit of 16 characters. Why on earth yould you impose such strict limits? Never heard of correct horse battery staple?

you are viewing a single comment's thread
view the rest of the comments
[–] youngalfred@lemm.ee 38 points 3 months ago (2 children)

A prominent Australian bank has these requirements:

For Internet Banking, your password must be six to eight characters long.

To improve security, it should:

contain both numbers and letters.
include upper and lower-case letters (your password is case sensitive).

[–] smeg@feddit.uk 10 points 3 months ago (1 children)

8 character max means they're running it on a mainframe I think, though I don't know enough about mainframes to know if this is a normal level of bad or really bad

[–] Rhaedas@fedia.io 7 points 3 months ago (1 children)

Could be (probably still is) running COBOL. It's a combination of "if it works and costs money to upgrade, why change" but mostly "if we migrate one thing it will break five other things".

[–] smeg@feddit.uk 1 points 3 months ago

Yep, that sounds like old bank tech to me

[–] clearedtoland@lemmy.world 7 points 3 months ago

8??? For banking? I haven’t used less than like 16 in at least 5, maybe 10 years. Jeez.