Comment on 6 digit OTP for Two Factor Auth (2FA) is brute-forceable in 3 daysComments−bjt2n39044yWhat I'm curious about is... If I collect 10 of your OTP keys, can I brute force the secret the generates them?−duskwuff4yNot practically. The standard requires that the secret contain at least 128 bits of randomness, and recommends more.−smw4yno
Comments
What I'm curious about is... If I collect 10 of your OTP keys, can I brute force the secret the generates them?
Not practically. The standard requires that the secret contain at least 128 bits of randomness, and recommends more.
no