This dumb password rule is from Sampath Bank.
So many rules!

This dumb password rule is from Sampath Bank.
So many rules!
Nabend liebe Gemeinde,
kennt sich hier jemand mit Passky aus (das kein Schreibfehler, das heißt so)? Kann man dem Passwortmanager vertrauen, ist die Softwarefirma in Ordnung?
This dumb password rule is from ING Australia.
4 numeric digits.
"Added security" by randomising the positions on the keypad. Must be clicked.
This dumb password rule is from Banque de Tahiti.
You have to enter your password using this *very* Frenchy keypad. You don't have lowercase letters, the blanks are not spaces but just non-clickable gaps, but as a compensation you have some weird symbols that your keyboard does not have a key for (e.g. `µ`).
No accessible version available.
This dumb password rule is from ING Australia.
4 numeric digits.
"Added security" by randomising the positions on the keypad. Must be clicked.
This dumb password rule is from Testprep Training.
The max password size is 20 characters
Of course, this new credentials checker in #swad needs a #tool to edit these #password files, that's currently work in progress.
I just implemented the class for reading a password, pretty simple thing from a pipe, but an "interesting" job from a #terminal. Turns out doing that portably, reliably and secure needs quite some code.
There's #getpass, but that's deprecated for good reasons (global state and not perfectly clear how it deals with #signals that could interrupt the input). And there's the sane replacement #readpassphrase in *some* systems (e.g. #FreeBSD), but that's not portable.
So, plain old #tcsetattr it is, with some signal handling on top:
https://github.com/Zirias/swad/commit/447f48096fc275a5bae113393ffe9a3cbc66cc95
This dumb password rule is from United Kingdom Post Office.
Will not allow you to copy-paste your password into the text box (e.g. from a password manager). Because allowing people to copy their passwords over will defintely not result in weak passwords :)
https://dumbpasswordrules.com/sites/united-kingdom-post-office/
This dumb password rule is from Banca Intesa Serbia.
Online banking portal of Banca Intesa Serbia has some password restrictions.
This is the translation of the requirements:
No special characters, minimum number of characters is 8, maximum number of
characters is 22, minimum number of upper case letters is 1, lower case also 1,
numeric characters...
This dumb password rule is from Vietnam Airlines.
`[[:alnum:]]{6,8}`
This dumb password rule is from Suncorp.
To "improve security" and "be password savvy", passwords must:
- be six to eight characters long
- Contain both numbers and letters
- Include upper and lowercase letters
This dumb password rule is from CVent.
Password Rules
- 8 to 20 characters with at least 1 number and 1 letter.
- No symbols or spaces.
This dumb password rule is from Tangerine.
Your PIN can only contain numbers and must be between 4 and 6 numbers.
Smashing Security podcast #413: Hacking the hackers… with a credit card? - A cybersecurity firm is buying access to underground crime forums to gather intelligence.... https://grahamcluley.com/smashing-security-podcast-413/ #smashingsecurity #securitythreats #lawℴ #password #podcast #nigeria #forum #scam
This dumb password rule is from CAF (French Family Allowance Fund).
You have to enter your 8-digit password using this Frenchy keypad.
https://dumbpasswordrules.com/sites/caf-french-family-allowance-fund/
This dumb password rule is from Ancestry.
Password:
- Must be at least 8 characters long
- Must contain at least 1 number
- Must contain at least 1 letter or special character
- Must not be a well known or common password
This dumb password rule is from Coventry Building Society.
Password has to be between 6 and 10 characters, can't contain any punctuation and you have to give characters from it on the phone to confirm identity.
https://dumbpasswordrules.com/sites/coventry-building-society/