Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
yazzku
on March 19, 2023
|
parent
|
context
|
favorite
| on:
Bitwarden PINs can be brute-forced
This doesn't answer the question. Why is there a choice to encrypt something when it's completely unnecessary (according to their threat model)? No point in building unnecessary complexity into software, especially software meant for security.
prophesi
on March 19, 2023
[–]
The client-side lock of 5 PIN attempts solves the much more common threat model the layman is concerned with.
Consider applying for YC's Spring batch! Applications are open till Feb 11.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: