Hacker News new | past | comments | ask | show | jobs | submit login

See "pASSWORD tYPOS and How to Correct Them Securely" by Dropbox: https://ieeexplore.ieee.org/abstract/document/7546536

We also implemented it at Pinterest, I think it's a pretty good idea for a few common cases, especially for users typing their password on mobile.

Before doing this though, you want to make sure you have rate limits in place against brute force password checks for account takeover.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: