Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

They also restrict it to <= 16 characters.... Yea, that's still decently secure, but there's nothing like a 50 character password that's pretty much impossible to break. I don't get why they put these restrictions on. Probably some brainless dev decided to make a SQL column 16-bytes wide.

EDIT: That doesn't even make sense, unless they're storing plain-text passwords.



They limit to 16 characters silently. I used a 32-character password for quite some time and wasn't aware that it was silently being truncated to 16.


There was a site I used where one password field was something like 20 chars max, the other was 50. So I could change my password but never log in with it.

That company was namecheap, if I remember rightly.


If you're at the point of needing a 50 character passcode for your blizzard game maybe you should just download the free authenticator.


OK, where can I download that free authenticator for my Nokia S60?


Well, they do offer http://us.battle.net/support/en/article/battlenet-sms-protec... which provides an extra (but different) layer of security.


Assuming you're from one of the "supported countries", though, which aren't listed.



Nope:

    The Java-based (J2ME) versions of the Battle.net Mobile Authenticator previously
    available through this website have been discontinued.
http://eu.blizzard.com/en-gb/mobile/


Find an apk and toss it on an Android emulator?


Two-factor authentication shouldn't be a replacement for a good password scheme, it should supplement it. Otherwise it's one-and-a-half factor. :)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: