Hacker News new | ask | show | jobs
Introducing laravel-password (github.com)
2 points by unicodeveloper 3645 days ago
1 comments

I seriously dislike systems like this.

You make it super easy for people brute forcing your passwords to limit the scope of things that need to be checked. You remove a extremely large pool of passwords that need to be checked.

I don't see a provlem with blocking the top 10k most popular passwords