this post was submitted on 17 May 2025
792 points (95.8% liked)

Mildly Infuriating

39691 readers
1406 users here now

Home to all things "Mildly Infuriating" Not infuriating, not enraging. Mildly Infuriating. All posts should reflect that.

I want my day mildly ruined, not completely ruined. Please remember to refrain from reposting old content. If you post a post from reddit it is good practice to include a link and credit the OP. I'm not about stealing content!

It's just good to get something in this website for casual viewing whilst refreshing original content is added overtime.


Rules:

1. Be Respectful


Refrain from using harmful language pertaining to a protected characteristic: e.g. race, gender, sexuality, disability or religion.

Refrain from being argumentative when responding or commenting to posts/replies. Personal attacks are not welcome here.

...


2. No Illegal Content


Content that violates the law. Any post/comment found to be in breach of common law will be removed and given to the authorities if required.

That means: -No promoting violence/threats against any individuals

-No CSA content or Revenge Porn

-No sharing private/personal information (Doxxing)

...


3. No Spam


Posting the same post, no matter the intent is against the rules.

-If you have posted content, please refrain from re-posting said content within this community.

-Do not spam posts with intent to harass, annoy, bully, advertise, scam or harm this community.

-No posting Scams/Advertisements/Phishing Links/IP Grabbers

-No Bots, Bots will be banned from the community.

...


4. No Porn/ExplicitContent


-Do not post explicit content. Lemmy.World is not the instance for NSFW content.

-Do not post Gore or Shock Content.

...


5. No Enciting Harassment,Brigading, Doxxing or Witch Hunts


-Do not Brigade other Communities

-No calls to action against other communities/users within Lemmy or outside of Lemmy.

-No Witch Hunts against users/communities.

-No content that harasses members within or outside of the community.

...


6. NSFW should be behind NSFW tags.


-Content that is NSFW should be behind NSFW tags.

-Content that might be distressing should be kept behind NSFW tags.

...


7. Content should match the theme of this community.


-Content should be Mildly infuriating.

-The Community !actuallyinfuriating has been born so that's where you should post the big stuff.

...


8. Reposting of Reddit content is permitted, try to credit the OC.


-Please consider crediting the OC when reposting content. A name of the user or a link to the original post is sufficient.

...

...


Also check out:

Partnered Communities:

1.Lemmy Review

2.Lemmy Be Wholesome

3.Lemmy Shitpost

4.No Stupid Questions

5.You Should Know

6.Credible Defense


Reach out to LillianVS for inclusion on the sidebar.

All communities included on the sidebar are to be made in compliance with the instance rules.

founded 2 years ago
MODERATORS
 

In password security, the longer the better. With a password manager, using more than 24 characters is simple. Unless, of course, the secure password is not accepted due to its length. (In this case, through STOVE.)

Possibly indicating cleartext storage of a limited field (which is an absolute no-go), or suboptimal or lacking security practices.

(page 5) 50 comments
sorted by: hot top controversial new old
[–] [email protected] 2 points 6 days ago (1 children)

Hey at least it told you there maximum length, i signed up paramount+ last night and it only said 42 characters was too long.

[–] [email protected] 1 points 6 days ago

Maybe they allow more characters during the day /s

[–] [email protected] 2 points 6 days ago (3 children)

You think that's infuriating? Imagine having an ISP that wants you to pick a password of max 8 characters.

[–] [email protected] 1 points 6 days ago

That was the insurance corp my career came bundled with for a decade until recently.

Sunlife. Finally very slowly replacing their garbage old website.

[–] [email protected] 0 points 6 days ago* (last edited 6 days ago)

I'll do you one better. The target redcard credit card doesn't allow non-standard special chars, max I think it was 12 chars and gets pissy at using known SQL special chars. If it wasn't for the fact it required a credit check prior to getting to that screen I would have ran so hard.

What's even more annoying is their password field says that it does support that, but if you try via the mobile app it errors out

[–] [email protected] 0 points 6 days ago (4 children)
load more comments (4 replies)
[–] [email protected] 2 points 6 days ago

Used to run into this more. Some legacy systems imposed password limits that seem archaic by modern standards. The authentication system was just supporting systems from before newer standards were created.

I think some of those compatibility layers outlived the systems they needed to be compatible with. The people that knew the system retired ages ago and the documentation was lost 3 or 4 "documentation system" changes ago.

Anyway, those have no place on the modern web.

[–] [email protected] 2 points 6 days ago

I also hate these kind of websites.

[–] [email protected] 1 points 6 days ago

I decided to be a smartass once and made a 63 character long password.

It wasn't too bad at a keyboard, though if you make a type you're screwed.

Trying to use my AD account to access admin tools on printer? I got it fixed, and immediately changed my password, lol.

[–] [email protected] -5 points 5 days ago (3 children)

What's the point? no one is brute forcing a 12-15 password if the login system has ANY login attempt protection anyway.

This seems like one of the extreme overkill things...

load more comments (3 replies)
[–] [email protected] 0 points 6 days ago (13 children)

In password security, the longer the better.

This is only true up to a certain point

[–] [email protected] 1 points 6 days ago

Is that point 24 - the limit they set?

[–] [email protected] 0 points 6 days ago (1 children)

Passphrases are much stronger than any 10 character password you can conjure up

load more comments (1 replies)
load more comments (11 replies)
[–] [email protected] 80 points 1 week ago (36 children)

Okay so I agree with you that a longer password is better but this in no way indicates clear text password storage.

[–] [email protected] 63 points 1 week ago (7 children)

Is the maximum 24 characters because their database column is a VARCHAR(24)? That's one of the first questions that I thought of. Sure, it doesn't guarantee plaintext, but it's a indicator that it may be stored plaintext, considering hashing doesn't care about length. Or at the very least whoever has had eyes on this code doesn't know shit about security, which makes me less confident in the product as a whole.

The only reason I can think of to have a maximum would be to save on bandwidth and CPU cycles, and even then 24 characters is ridiculously stingy when the difference would be negligible.

[–] [email protected] 1 points 6 days ago

I would have thought the opposite. I remember having a familiar conversation: “we need a sanity check in the password: what would no sane person do?” I believe we cut it off at 64 characters, but I can see someone thinking 24 is kore than enough, if they’ve never used a password generator.

[–] [email protected] 43 points 1 week ago (2 children)

bcrypt hashes only the first 72 bytes. 24 characters is the max amount of 4 byte UTF8 characters when using bcrypt. Which is stupid because UTF8 is variable, but still, it's a possible explanation.

load more comments (2 replies)
load more comments (5 replies)
load more comments (35 replies)
[–] [email protected] 73 points 1 week ago (4 children)

What’s more frustrating is when the password creation page is silently cutting off too long passwords and don’t inform you about it.

load more comments (4 replies)
[–] [email protected] 36 points 1 week ago (2 children)

I've had a case in the past where I reduced my password to the limit, but after account creation, I was not able to log in.

Turns out they had an off-by-one issue, and a password with a length slightly below the limit worked fine.

load more comments (2 replies)
load more comments
view more: ‹ prev next ›