Comment

Among the Deniers at Denia-Palooza

58
kirkspencer6/09/2012 11:09:00 am PDT

re: #55 b_sharp

Mine always use dictionary words with a 3 or 4 digit number that determines which characters are upper case and I have at least 1 special character.

Not so long ago I watched a(n alleged) computer expert respond to the question “how do I remember dozens if not hundreds of unique strong passwords”?

“Use a cloud based password wallet.”

I laughed. Yes, it is hard to break into. Hard is not impossible. Further it’s just one password that you use all the time through a frequently accessed site, making it still vulnerable to snorts and scans and loggers.

When I taught password classes years ago, I used to teach using mnemonic based acronyms using at least eight characters. For example: kirk spencer at littlegreenfootballs might get: @1gf=>K$ (No, that is not my password). I would recommend using some habitual behavior between passwords, such as yahoo might get @y@h00=>ks# . Someone trying to break YOUR passwords might determine the pattern, but someone bouncing between sites trying a discovered password with your open login would fail.

Any security can be broken given enough time, effort, and resources. The key is to use enough security without making it so burdensome you end up breaking it yourself.