Hacker News new | past | comments | ask | show | jobs | submit login

> Knowledge-based authentication (KBA) is out

Finally! This is my biggest beef. I've taken to generating long random strings as answers to these questions but in some cases that's insecure too because they present you with a multiple choice set of answers and then it's obvious.

Also glad they're getting rid of ridiculous composition rules, hints, and password expiration.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: