Free Republic
Browse · Search
General/Chat
Topics · Post Article

To: Mean Daddy
Same here. NEVER use any words for passwords, always a mix of lower/upper case, use numbers randomly placed, never repeating the same number, and at least 3 "special" characters randomly placed.

Also, never use the same letter more than once (upper and lower are different).

So, for example, XxPp61.Ww6QqLlEe*4Bb8YyMm2- .

Not crackable, at least until they start using Quantum computers...
71 posted on 12/23/2024 2:47:27 PM PST by Bikkuri (I am proud to be a PureBlood.)
[ Post Reply | Private Reply | To 20 | View Replies ]


To: Bikkuri

Actually, these randomized passwords are based off of hashes. Many password utilities generate a random hash on your first use and continue to use the same hash for all of your passwords. It’s possible to reverse a hash with enough data. While you, and me, and most FReepers aren’t likely to be targets, an advanced adversary could very easily gather enough passwords from phishing to discover a hash. Once that’s figured out, your password vault is useless.

Microsoft is actually recommending a transition to passphrases with no complexity. They’ve put a number of cryptographic algorithms to the test and found that human readable passphrases with just spaces and some capital letters are better for account security than a random password. The catch: they need to be greater than 20 characters.

Why? Because long complex passwords are difficult to remember. Even passwords with substitutions (I l!ke d0gs) are easily guessed by password crackers. On the other hand, passwords with spaces and more than 20 characters creates a substantial amount of computational overhead due to the length of the password and the use of things like the space bar. Plus, the password is easier for an employee to retain, thus reducing calls to a helpdesk.


87 posted on 12/24/2024 12:24:25 PM PST by rarestia (“A nation which can prefer disgrace to danger is prepared for a master, and deserves one.” -Hamilton)
[ Post Reply | Private Reply | To 71 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson