How Safe Are Your Passwords?

Charles Johnsonfollow me on twitter
Science • Sun Apr 26, 2009 at 6:03 pm PDT • Views: 200

Here’s an eye-opening article by computer security expert Bruce Schneier on the lessons learned from a database of stolen passwords: Real-World Passwords.

How good are the passwords people are choosing to protect their computers and online accounts?

It’s a hard question to answer because data is scarce. But recently, a colleague sent me some spoils from a MySpace phishing attack: 34,000 actual user names and passwords.

The attack was pretty basic. The attackers created a fake MySpace login page, and collected login information when users thought they were accessing their own account on the site. The data was forwarded to various compromised web servers, where the attackers would harvest it later.

MySpace estimates that more than 100,000 people fell for the attack before it was shut down. The data I have is from two different collection points, and was cleaned of the small percentage of people who realized they were responding to a phishing attack. I analyzed the data, and this is what I learned.

I recommend reading the whole thing. And then changing your passwords.

UPDATE at 4/26/09 6:29:29 pm:

And just as a point of reference:

Your LGF account passwords are encrypted with a “one-way” algorithm, which ensures that:

1) I can’t learn your password even if I wanted to, and

2) in the highly unlikely event that a malicious person gets access to our database, they can’t learn your password either.

This is why we have a “Forgot your password?” feature, that lets you reset your password if you forget it, in a safe way.

Don’t bother asking me to email your password if you forget it, because I don’t know it, and can’t know it. By design.

Advertisement

241 comments

^ back to top ^

Name:

Pass:

Register Forgot Your Password? Account Settings Re-send Confirmation (To log in, cookies must be enabled in your browser!)

Turn off ads by subscribing!
For about 33 cents a day, our subscription option turns off all advertisements at LGF!
Read more...


► LGF Headlines

  • Loading...

► Tweeted Articles

  • Loading...

► Tweeted Pages

  • Loading...

► Top 10 Comments

  • Loading...

► Bottom Comments

  • Loading...

► Recent Comments

  • Loading...

► Tools/Info

► LGF Hits

► Resources

► Never Forget

► Statistics

► Tag Cloud

► Contact

You must have Javascript enabled to use the contact form.
Your email:

Subject:

Message:


Messages may be published in our weblog, unless you request otherwise.
Tech Note:
Using the Contact Form

More Partners

Compare Electricity Prices in your area. Texas Electricity is deregulated; you have the right to choose Texas Electric Rates from among many Texas Electric Companies.

A tough room.

TwitterFacebook
LGF Pages
Recent Pages

researchok
Al Qaeda Leader Backs Syrian Revolt Against Assad
1 hour, 18 minutes ago
Views: 35 • Comments: 0
Tweets: 0 • Rating: 1

researchok
Why the World Needs America: Some Argue That Democracy and Free Markets Could Thrive Without U.S. Predominance. Not Likely.
2 hours, 3 minutes ago
Views: 50 • Comments: 0
Tweets: 0 • Rating: 1

researchok
The World's Baby Factory: It's Already the World's Second-Most Populous Country. So Why Is India Turning 75 Year Old Grandmother
2 hours, 6 minutes ago
Views: 56 • Comments: 0
Tweets: 0 • Rating: 1

researchok
Nazi Family Values: Disturbing Keepsakes of the Most Inhumane Figures in History
2 hours, 9 minutes ago
Views: 58 • Comments: 0
Tweets: 0 • Rating: 1

researchok
The Halftime in America Victory Dance
2 hours, 11 minutes ago
Views: 46 • Comments: 0
Tweets: 0 • Rating: 0

researchok
Mitt's Move on Rick
2 hours, 11 minutes ago
Views: 42 • Comments: 0
Tweets: 0 • Rating: 0

researchok
A powerful megachurch's harsh tactics raise questions about how much control churches should have over their members' lives.
2 hours, 12 minutes ago
Views: 61 • Comments: 0
Tweets: 0 • Rating: 1

researchok
'Speed Freak Killer' Was Paid $33,000 to Guide Search for Victims
2 hours, 13 minutes ago
Views: 52 • Comments: 0
Tweets: 0 • Rating: 1

researchok
Too Many Secrets? The intelligence community's classification system is broken.
2 hours, 13 minutes ago
Views: 51 • Comments: 0
Tweets: 0 • Rating: 1

researchok
Outing Iran: An underground railroad for gay and lesbian Iranians runs through Istanbul to the West
2 hours, 13 minutes ago
Views: 64 • Comments: 0
Tweets: 0 • Rating: 1

 Frank says:

You get nothing with your college degree -- from Roxy & Elsewhere