How on earth can you both not accept the password I copied from my password safe and tell me that I cannot use the same pasaword again?

  • chuckleslord@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    18 hours ago

    They’re lying about the issue and don’t trust that you’re who you say you are. It’s security systems 101. If you give informative error messages, they can be used to reverse engineer the password of accounts. So every error is going to be “incorrect password”

    • marcos@lemmy.world
      link
      fedilink
      arrow-up
      0
      ·
      17 hours ago

      That part is possible:

      They’re lying about the issue and don’t trust that you’re who you say you are.

      The rest of your comment is just bad. I doubt you even manage to keep that information secret, much less get a positive value out of the entire machination.

    • cron@feddit.orgOP
      link
      fedilink
      English
      arrow-up
      0
      ·
      18 hours ago

      Sounds like security by obscurity to me. Works, but rarely the best solution.