@cendyne @bascule If your "passwords" are longer than 72 bytes, it's pretty clear you're not using the API as intended but trying to do something wacky with it. Okta FA'd and FO'd.
Conversation
Notices
-
Embed this notice
Rich Felker (dalias@hachyderm.io)'s status on Monday, 24-Mar-2025 02:56:30 JST Rich Felker
-
Embed this notice
Cendyne (cendyne@furry.engineer)'s status on Monday, 24-Mar-2025 02:56:31 JST Cendyne
@bascule As Okta, the mature and very well paid security company had to find out the hard way.
-
Embed this notice
Cendyne (cendyne@furry.engineer)'s status on Monday, 24-Mar-2025 02:56:32 JST Cendyne
@bascule at 72~
-
Embed this notice