The password cracking by brute force, ie, by trial and error is always possible if the system does not limit the number of attempts. The best way to prevent this type of attack is to block the account after a specified number of authentication failures.