Comment Re:please (Score 1) 307
True, but as I said I was generous in my assumptions anyway. In reality the alphabet is larger, Apple must have a minimum password length of at least 8, and I really doubt that you can do 100 tries per second. I therefore am very sceptical that even with a dictionary attack you can get very far, at least not without choosing a specific dictionary for your victim. And if you do that it is no longer a brute-force attack.
As I wrote in an earlier discussion, I know very few websites that impose a limit on the number of login attempts, so it is not reasonable to suddenly declare this an epic fail of Apple. It is good they plugged the hole (although they could just block you for an hour after three failed login attempts), but guessable passwords must have contributed to this.
Oh, and does