Re: [Owasp-delhi] Re-considering CAPTCHAs

2011-01-31 Thread Gunwant Singh
*1. I think this point is valid even if you deploy full-fledge CAPTCHAs. CAPTCHA deployed today could be exploitable a year later or may be earlier.* ** *2. What if I use Auto-complete feature to turn-off the same, thereby compromising user-convenience against Security? * On Mon, Jan 31, 2011 at 9:

[Owasp-delhi] Re-considering CAPTCHAs

2011-01-31 Thread Gunwant Singh
Hi all, Hope you are doing well. So there was this thread on CAPTCHAs on Security focus lately and I happened to read this new idea on CAPTCHA. This is what he said. "I hate captchas, always have so I use a reverse captcha on sites that I build. You add a field to the form with name and id of em