Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Think of it this way: there’s a button to show your actual password in the majority of applications nowadays.

`sudo` and `login` are I think the only two tools I use that don’t provide any feedback.

Otherwise my entire life is behind a password database that lets me see my password in plaintext and otherwise shows the length of it as it’s typed. KeepassXC.

If knowing how the length of your password makes it easy to crack you probably have other problems



Knowing the length makes is defined easier, maybe not easy but easier.


It saves 1/Nth of the total time taken to brute force an N character password compared to starting from length 1. So any password where this is a significant fraction is so short that the time saved isn't really relevant.

So yes, "easier", technically. But not in any meaningful way.


Unless you attack a group and want to know which target has an easier to brute force password.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: