|
|
|
|
|
by littlestymaar
300 days ago
|
|
> an IP that doesn't appear anywhere in your logs suddenly submits two or three login attempts How is the attacker supposed to bruteforce anything with 2-3 login attempts? Even if 1M node submitted 10 login attempts per hour, they would just be able to try 7 billion passwords per month per account, that's ridiculously low to bruteforce even moderately secure passwords (let alone that there's definitely something to do on the back end side of things if you see one particular account with 1 million login attempts in a hour from different IPs…). So I must have misunderstood the threat model… |
|