http://arstechnica.com/security/2013/05 ... passwords/
If you use anything other than a properly randomised password, CHANGE IT. Here is a sample of supposedly secure passwords that crackers have broken quickly and easily:
If possible, use something like KeePass
Passwords
- nowayjose
- Utterly Bastard Groovy Amphetamine Filth
- Posts: 539
- Joined: 19 Mar 2006, 02:15
- Location: Berlin
Lesson: never store plain password hashsums, always use them with a salt (random initialization vector). That is pretty common knowledge. From the screenshot above, it is obvious this simple method has been omitted from that list of hashes, for whatever reason. Also, make sure your password db doesn't get stolen.
- markfiend
- goriller of form 3b
- Posts: 21181
- Joined: 11 Nov 2003, 10:55
- Location: st custards
- Contact:
If you read the accompanying article, even salting passwords doesn't help much if the site uses crappy hashing like MD5 or SHA1.
The fundamental cause of the trouble is that in the modern world the stupid are cocksure while the intelligent are full of doubt.
—Bertrand Russell
—Bertrand Russell
- Izzy HaveMercy
- The Worlds Greatest Living Belgian
- Posts: 8844
- Joined: 29 Jan 2002, 00:00
- Location: Long Dark Forties
- Contact:
I always use the same password: **********
Let 'em try to crack THAT
(and always use a semicolon in your password, H4X0Rz love that little character)
IZ.
Let 'em try to crack THAT
(and always use a semicolon in your password, H4X0Rz love that little character)
IZ.
Izzy HaveMercy wrote:I always use the same password: **********
Let 'em try to crack THAT
IZ.
- million voices
- Slight Overbomber
- Posts: 1005
- Joined: 10 May 2006, 22:31
- Location: The Ballrooms Of Mars
I can't say as I really understood all of it, but I thought the section "Anatomy of a Crack" would have been more interesting
Well you must know something
'Cos we're dying of admiration here
Mastering obscure alternatives
'Cos we're dying of admiration here
Mastering obscure alternatives
- Izzy HaveMercy
- The Worlds Greatest Living Belgian
- Posts: 8844
- Joined: 29 Jan 2002, 00:00
- Location: Long Dark Forties
- Contact:
Oh, crap, that was mine password to gmail.
(Like google didn't read my e-mails).
(Like google didn't read my e-mails).