search
Web authentication
Trends
- 1HTML maxlength attribute found to block Vanguard loginsโ<input type="password" maxlength="20"> prevents me from logging into Vanguard
A developer has written about how a password input tag using the maxlength attribute set to 20 prevented them from logging into Vanguard, the US investment firm. Longer passwords get silently truncated before submission, so authentication fails even though the user types the correct credentials. The piece argues the attribute is harmful in password fields and urges developers to avoid limiting password length, a pitfall other sites may share.
- 2Experts question whether web authentication is sustainableโผDoes anyone else get the feeling that the way the world authenticates to thousands of services on the Web, and the curre
A cybersecurity commentator is asking whether the way the world authenticates to thousands of online services is sustainable, arguing that current login systems outpace the technical literacy of users across generations. The remark has struck a chord among information security professionals, who regularly point to passwords, phishing, and inconsistent security standards as growing problems. It feeds into a wider debate over passkeys, multi-factor authentication, and how to design account security that ordinary people can actually manage.
- 3Apache HTTP Server vulnerability EUVD-2026-90892 disclosedโ๐จ EUVD-2026-90892 ๐ Score: n/a ๐ฆ Product: Apache HTTP Server ๐ข Vendor: Apache Software Foundation ๐ Updated: 2026-10-01
A new vulnerability, EUVD-2026-90892, has been recorded for the Apache HTTP Server, maintained by the Apache Software Foundation. The flaw involves missing authentication checks in the mod_auth_digest module in versions before 2.4.69, potentially allowing unauthenticated access. Users are advised to update to a patched release. The entry was updated on 1 October 2026.