Wouldn’t this exhaust the server resources with storing all the tokens? Which you would need to do significantly longer than 3 secs? Banning the IP may help but then you could just do a simple fail2ban instead?
I see the point but noone in their right mind would write the javascript like that. When written better it's a good amount shorter than the React solution.
I see the point but noone in their right mind would write the javascript like that. When written better it's a good amount shorter than the React solution.