Monday, October 26, 2015

A Good Password

You’ve Been Misled About What Makes a Good Password

Common advice on how to make a strong password is misleading, according to a new study of password-guessing techniques.

Tom Simonite | October 19, 2015

“Password must include upper and lowercase letters, and at least one numeric character.” A common scold dished out by websites or software when you open an account or change a password—and one that new research suggests is misleading.
A study that tested state-of-the-art password-guessing techniques found that requiring numbers and uppercase characters in passwords doesn’t do much to make them stronger. Making a password longer or including symbols was much more effective.


This 11-year-old is selling cryptographically secure passwords for $2 each. Girl makes Diceware passwords, rolled with real dice, written by hand, sent by mail. Source: 

