Page 2 of 2 FirstFirst 12
Results 11 to 12 of 12

Thread: How to choose the "best" passwords and not forget them

  1. #11
    Gold Member irneb's Avatar
    Join Date
    Apr 2007
    Location
    Jhb
    Posts
    625
    Thanks
    37
    Thanked 111 Times in 97 Posts
    Quote Originally Posted by Zesty App Services View Post
    The question is where to store all those passwords in a safe place?
    Ouch! That's a problem! Write it down and lock it in a safe I guess.

    The point I'm trying to make about this entire thread: You don't want to "store" your passwords somewhere, that's just making for one more weakpoint. And if your passwords are so complex that you have to write them down, it means chances are that you are going to request password resets quite often - which on their own is already not too secure.

    Rather choose a long(ish) phrase / set of ideas which you can more easily remember (especially relevant to each site where you log in). Then you might want to mutate that using some of the methods described here to try and obfuscate it so it's not as easily guessable as simply running a program trying out various word combinations. That way you should be able to remember the phrase / ideas for that site, and be able to work-out the actual password from the methods you chose. No more need to write anything down.
    Gold is the money of kings; silver is the money of gentlemen; barter is the money of peasants; but debt is the money of slaves. - Norm Franz
    And central banks are the slave clearing houses

  2. Thanks given for this post:

    Dave A (31-Aug-13)

  3. #12
    Gold Member irneb's Avatar
    Join Date
    Apr 2007
    Location
    Jhb
    Posts
    625
    Thanks
    37
    Thanked 111 Times in 97 Posts
    An update on this: http://boingboing.net/2014/02/25/cho...-password.html

    Exactly as I thought originally. Simple letter substitutions and/or keyboard patterns (even like those in the cartoon) are simply too easy to crack into. Even he suggests using a sentence and some random method of your choosing to extract portions from that and modify some to come up with a more garble-like password.

    Something I didn't think about which is mentioned there: needing to change passwords periodically might actually be a weak point. If it's known that a particular site requires its users to change their passwords on a particular date, then crackers can target the site's connection to try and "read" the data sent through that day. Or even much easier, use phising emails to impersonate the site so users send the cracker their new passwords in addition to the old.

    As for storing passwords ... he mentions Password Safe, though I am a bit sceptical about this.
    Gold is the money of kings; silver is the money of gentlemen; barter is the money of peasants; but debt is the money of slaves. - Norm Franz
    And central banks are the slave clearing houses

Page 2 of 2 FirstFirst 12

Similar Threads

  1. Replies: 4
    Last Post: 17-Jul-14, 10:16 AM
  2. Zuma Controversy " Cast the First Stone...""
    By sgafc in forum South African Politics Forum
    Replies: 23
    Last Post: 17-Feb-10, 03:02 PM
  3. "Grandad Bandit" Serial Bank Robber - Can only happen in the States
    By BBBEE_CompSpec in forum General Chat Forum
    Replies: 0
    Last Post: 13-Nov-09, 12:48 AM

Did you like this article? Share it with your favourite social network.

Did you like this article? Share it with your favourite social network.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •