3 ms·
More info? It goes further than just the error message. I think the original exploit was based on how quickly Unix would fail to login. (Bad user failed faster
by prettyStandard 3y ago
More info?
It goes further than just the error message. I think the original exploit was based on how quickly Unix would fail to login. (Bad user failed faster than bad password) and that allowed you to enumerate the user names.