• 0 Posts
  • 45 Comments
Joined 3 years ago
cake
Cake day: June 12th, 2023

help-circle






  • Association attacks exist in the wild.

    Let’s say that this is their ebay account. In that case the reward for unlocking each account is very high, so attackers (even in mass attacks) have incentive to put in more work as long as the work cost per account hacked is less than the average reward and there is a net profit.

    I assume in this day and age it’s probably also viable to use LLMs for password guessing, as long as it’s for a high value account. That unlocks a whole another can of worms and if it was me I’d never use low entropy passwords like “moc.y4b3-saltyboi69”

    Perhaps this kind of password is viable if it’s for an online service that implements rate limiting, but you also have to consider the case that a site gets hacked and their encrypted database (encrypted by each user’s password) makes it onto the web. This has happened a lot recently and makes it ridiculously easy for people to throw their GPUs at the task.














  • “The two hour limit… is merely a guideline… to encourage citizens,” Toyoake Mayor Masafumi Koki said in a statement.

    “This does not mean the city will limit its residents’ rights or impose duties,” he said,

    “Rather, I hope this serves as an opportunity for each family to think about and discuss the time spent on smartphones as well as the time of day the devices are used.”

    omfg this is exactly how limits on social media should be approached, NOT through restrictive enforcement