Is it immoral to put a captcha on a login form?

前端 未结 6 1484
执念已碎
执念已碎 2021-02-05 08:10

In a recent project I put a captcha test on a login form, in order to stop possible brute force attacks.

The immediate reaction of other coworkers was a request to remov

6条回答
  •  时光说笑
    2021-02-05 08:38

    Just add a CAPTCHA test for cases when there have been failed login attempts for a given user. This is what lots of websites currently do (all popular email services for instance) and is much less invasive.

    Yet it completely thwarts brute force attacks, as long as the attacker cannot break your CAPTCHA.

提交回复
热议问题