• Phen@lemmy.eco.br
    link
    fedilink
    arrow-up
    3
    ·
    15 hours ago

    Imagine getting a multi byte character at the right position to get it split so that one byte gets in and the other doesn’t.

    • Maestro@fedia.io
      link
      fedilink
      arrow-up
      4
      ·
      12 hours ago

      It doesn’t matter. That will happen for both the stored hash and the entered password, so it still matches.

      • Phen@lemmy.eco.br
        link
        fedilink
        arrow-up
        1
        ·
        2 hours ago

        As long as it runs the same code, yes. But things may change, clients may pre-emptively split the string or stuff like that.