Banking-Grade Credential Stuffing: The Futility of Partial Password Validation

Interesting post on Cloudflare about how the common banking login system of asking for part of a password is actually not very good security at all.

 

Password entry form
Password entry form

Source: Banking-Grade Credential Stuffing: The Futility of Partial Password Validation