|
|
|
|
|
by jaeming
1456 days ago
|
|
Existing crypto libs like bcrypt, which I mentioned? Or are you talking about something more? The credential stuffing mention you make makes me think you must mean something more. Does Auth0 by default advise users that they are using breached emails/passwords? If that is default behavior then I agree it does add a shining point to their feature-set. |
|
Minimizing a credential stuffing attack requires detecting the attack and then adding captchas or other bot mitigation techniques.