After a few attempts you can no longer use a PIN and must call in or use your security question.
After a few attempts you can no longer use a PIN and must call in or use your security question.
I'd post my code, but that would let any idiot figure out how to replicate this attack. Try including a user agent, and not using the same cookies every time.
Any person nefarious enough to perform the attack is probably smart enough to figure it out anyway.
It should be trivial for anyone who understands HTTP and threads to reimplement.
> any word on supporting longer passwords eventually?
> Nothing as of right now but it's something we may definitely look into in the future. Thanks, Shane.
"May definitely"?
It would be nice if the writer of the article would have said that they where talking about Virgin Mobile US, as Virgin Mobile are a multi national company.