Someone wrote in [personal profile] mjg59 2016-03-30 07:35 am (UTC)

Re: IMO you can't solve security by adding more stuff

Actually it is obfuscation but that is not a bad thing.

Obfuscation has a bad rap but people don't actually understand it, and you see that here.

The difference between "regular" obfuscation and this randomization system is that in a regular way, /someone/ is going to know the answer, whereas with randomization, no one really knows.

It is like letting someone chase you forever. Also, if every guess comes at high risk, the probability of someone ever attempting it goes down considerably. Personally I would use this technique if I had no other recourse, but not in a normal system or situation where I would be confident enough to trust other measures.

Post a comment in response:

If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

If you are unable to use this captcha for any reason, please contact us by email at support@dreamwidth.org