Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

The Password Pandemic II: How to Create Awesome Passphrases
Stronghold Cyber Security ^ | December 5, 2017 | Jason McNew

Posted on 12/05/2017 9:28:59 AM PST by Gennie

In part I of “The Password Pandemic”, I advised (in the same vein as NIST SP 800-63b) the use of passphrases, instead of passwords. This is because hackers have built massive databases of stolen passwords and tables full of password “hashes” (known as rainbow tables.) Also, those of us in the InfoSec community know that when we force the use of complicated passwords on people, they will write them on Post IT notes under their keyboards. I have even seen this happen in very high security environments — this is bad.

(Excerpt) Read more at strongholdcybersecurity.com ...


TOPICS: Business/Economy; Computers/Internet; Miscellaneous
KEYWORDS: passphrases; passwords; problems
Navigation: use the links below to view more comments.
first previous 1-2021-4041-48 last
To: outofsalt

On my first job, my password was the F word and the name of my ex. We have since made up and she is married to her 4th husband who was the guy she dated before me.

He’s in Hell.


41 posted on 12/05/2017 2:19:54 PM PST by AppyPappy (Don't mistake your dorm political discussions with the desires of the nation)
[ Post Reply | Private Reply | To 39 | View Replies]

To: Gennie

Hmmm...I wonder if “Deckthehallswithboughrsofhorryfarararararararara” would work.


42 posted on 12/05/2017 3:56:40 PM PST by TXBlair (We will not forget Benghazi.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: DannyTN
Don’t use “Awesome Passprhase”

Actually, that one wouldn't be so bad.

However, “Awesome Passphrase”...not so much.

43 posted on 12/05/2017 3:58:05 PM PST by Bloody Sam Roberts (Ban pre-shredded cheese now! Make America Grate Again.)
[ Post Reply | Private Reply | To 5 | View Replies]

To: M Kehoe

Nice! Speaking of Van Hagar, I actually use 5150 for some of my work accounts. Easy to remember.


44 posted on 12/05/2017 4:01:42 PM PST by TXBlair (We will not forget Benghazi.)
[ Post Reply | Private Reply | To 21 | View Replies]

To: tenger
Is it accurate?

Yes.

45 posted on 12/05/2017 4:07:18 PM PST by ShadowAce (Linux - The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 24 | View Replies]

To: Gennie

I just use random numbers an letters. Just write it down and put it in your wallet or keep them in a small notebook locked in your office.


46 posted on 12/05/2017 4:20:50 PM PST by central_va (I won't be reconstructed and I do not give a damn.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Gennie
What's pissing me off is the lack of a standard for the US GVT. There are different standards for:

Social Security: Start with a number
My Pay
VA
Tricare
etc.

And you have to change your password every 90 days. It hit me today that we are headed to a federal ID program where the ID Card will be required to access your accounts.

I was a math major and am having issues trying to remember passwords. Non tech people are in real trouble.

47 posted on 12/05/2017 4:26:05 PM PST by where's_the_Outrage? (Drain the Swamp. Build the Wall.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Bloody Sam Roberts

LOL My passphrase isn’t working.


48 posted on 12/06/2017 11:56:44 AM PST by DannyTN
[ Post Reply | Private Reply | To 43 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-48 last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson