Strong password?
I was reading an article on strong passwords and some of the most commonly used bad passwords. So it got me thinking of changing some of my passwords.

The most common tips for secure passwords seams to be to not use your name, date of birth, phone number, pet's name etc. And to use different character types such as @$€[! and replacing letters with numbers or different characters. You all know this. But then I also stumbled upon this image:

Is this true? Is this the best and most secure password you can create?

If you use just words like in the suggestion then you're vulnerable to a dictionary attack I believe.

i always use steve1234 for everything. no one would ever think that simply. clever eh?



a lot of site make you use at least one number and one capital letter but intersting.

12345 -

With the shitty attitude towards looking after customer data most large organizations display, it doesn't seem to matter what you choose, as long as it's not "password".

I kinda like the idea of fingerprint unlocking. A friend of mine had a laptop that had a fingerprint swiper on it. You could link your finger (any of your fingers) to correspond to a password.

What was neat about this, is that you can create a very long difficult password that you might not be able to remember very well, and simply link it to your fingerprint. But, if you ever had to login to whatever it was you setup that with on a different computer, you are hosed unless you remember that insane password, haha!

I try to change up my passwords fairly regularly, but I think if you do that to often, you start picking easier and easier passwords just so that you can remember them.

And I've seen instances where certain software that requires logins, if you got the first 9 characters correct (or however many), you could type whatever the heck you wanted after those 9 characters, any length, any text, so long as the first 9 were correct. That makes adding a few numbers or characters after an easy to remember word not such a good idea. I was befuddled when I first stumbled upon that loop hole a while back, when after hitting the enter key to login, simultaneously realizing that I goofed the last character on my password, and it still worked. Then after messing around and trying various things, realized that only the first 9 characters mattered. That particular instance has since been fixed, and I don't know how common that is, but the fact that it happened isn't very good. And it wasn't at a small time establishment either. -

i think passwords are very lowtech and overdue..
time for something nextgen like fingerprints, retinascans, etc

in the meanwhile 4 uncommon words with common subs would make sense
st4cy l0ves hor5e c0ck

99% of passwords are "cracked" by keylogging software anyway (or phishing). It's 'high tech' action films that lead you to beleive some computer is out there, randomly attempting every character and numeric combination of all the letters to 'guess' your password.

edit: I'm all for finger-printing and retina scans and what have you. But that's just analog (biometric) data turned into digital - so can still be "cracked" or duplicated.
I use a random password generator that uses caps, numbers and symbols. i have it choose a 50 character password and then i take a group of digits from it. I always use a string in a row and most of the time i use 8 characters, but it depends on the requirements. The password has no significant meaning and if someone tries to recreate it, it would be nearly impossible. It sucks having to remember random numbers like that, but it helps to keep things secure.

I used to do somewhat random looking characters in my passwords, I'd make a little jingle, and the first letter (or number) of each word would be the password. It's not exactly random, but looking at the password alone, it seems to be random.

For example,

Sally put 5 vray licenses on her new dongle! = Sp5vlohnd!

or for a company password:

Holy crap I hate working for this company! = HcIhwftc! (something like this will make you smile everytime you enter your password!) -

I used to use some lame ass passwords. Now, I think of a word I want to use, find out how to pronounce it in Japanese, then spell out the Japanese pronunciation in English with a few fancy characters at the end (prolly just as weak as any other) : p hasn't failed me yet!
Same as Error. But instead of making up a jingle, I use songs. Easier to remember.

e.g. Hanging on in quiet desperation is the English way = HoiqditEw

