: how can brute forcing password still exist if sites lock the account after several failed attempts?

231 views

: how can brute forcing password still exist if sites lock the account after several failed attempts?

In: 536

15 Answers

Anonymous 0 Comments

Because you don’t brute force the live system directly. Attackers will have obtained a copy of the password database, and can attack it locally on their own system, where lockouts or other controls aren’t a factor.

You are viewing 1 out of 15 answers, click here to view all answers.