Exit
  • Global community
    • Language:
      • Deutsch
      • English
      • Español
      • Français
      • Português
  • 日本語コミュニティ
  • 한국 커뮤니티
0

Brute Force Attack By API Or Login Page

New Here ,
Sep 06, 2020 Sep 06, 2020

Hi
I have a security question
When a hacker intends to attack Brute-force, he can easily call all users with the wrong password by placing a simple loop, and after 5 times, the account will be deactivated for a period while. This is one of the new system security policies!

 

"If a user incorrectly enters a password five (5) times, the account is locked out for five (5)
minutes and the user is notified by email that the account has been temporarily suspended."

 

How can these attacks be prevented?
The Brute-force solution all over the world is captcha codes. Is it possible to add captcha or another solution?

 

I need your idea and solutions

 

Thanks in advance

TOPICS
Account management
101
Translate
Report
Community guidelines
Be kind and respectful, give credit to the original source of content, and search for duplicates before posting. Learn more
community guidelines
no replies

Have something to add?

Join the conversation