Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yes, because of a horrendous implementation by Microsoft. 3 minutes instead of 30 second TOTP validity and unlimited guesses.


Technically, 10 guesses per session but unlimited sessions.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: