Comment on Anon witnesses excellent security

<- View Parent
Object@sh.itjust.works ⁨2⁩ ⁨weeks⁩ ago

Could be because OWASP now actively recommends against periodic password changes.

Ensure credential rotation when a password leak occurs, at the time of compromise identification or when authenticator technology changes. Avoid requiring periodic password changes; instead, encourage users to pick strong passwords and enable Multifactor Authentication Cheat Sheet (MFA). According to NIST guidelines, verifiers should not mandate arbitrary password changes (e.g., periodically).

source
Sort:hotnewtop