PCWorld Forums

PCWorld Forums: Tweet Of Day: How To Create A Strong Password To Guard Against Hackers - PCWorld Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Tweet Of Day: How To Create A Strong Password To Guard Against Hackers

#1 User is offline   PCWorld 

  • Advanced Member
  • PipPipPipPipPipPipPipPip
  • Group: PCWorld BOT
  • Posts: 103,734
  • Joined: 01-August 07

Posted 02 February 2013 - 07:23 AM

Post your comments for Tweet of day: How to create a strong password to guard against hackers here
0

#2 User is offline   MKZ1945 

  • Advanced Member
  • PipPipPipPip
  • Group: Members
  • Posts: 182
  • Joined: 06-December 10

  Posted 02 February 2013 - 11:12 AM

Use KeePass and change your passwords often
0

#3 User is offline   Num2 

  • Full Member
  • PipPipPip
  • Group: Members
  • Posts: 56
  • Joined: 09-September 10

  Posted 02 February 2013 - 11:50 AM

The article completely ignores the fact that the passwords were basically given way by Twitter. No password no mater how strong or how often changed can save you in this case.
0

#4 User is offline   DrSpanky 

  • Member
  • PipPip
  • Group: Members
  • Posts: 41
  • Joined: 08-December 12

  Posted 02 February 2013 - 12:33 PM

Quote

The article completely ignores the fact that the passwords were basically given way by Twitter. No password no mater how strong or how often changed can save you in this case.

This is a common oversight. When these major breaches come to light, all the tech writers suggest strategies and applications to create or remember strong passwords. However, as Num2 points out, the strongest password ever created is useless when some intruder is accessing your account through a back door hack. The real question is, can we trust these social networks with our private information?
0

#5 User is offline   MKZ1945 

  • Advanced Member
  • PipPipPipPip
  • Group: Members
  • Posts: 182
  • Joined: 06-December 10

  Posted 02 February 2013 - 02:10 PM

Quote

DrSpanky

This is a common oversight. When these major breaches come to light, all the tech writers suggest strategies and applications to create or remember strong passwords. However, as Num2 points out, the strongest password ever created is useless when some intruder is accessing your account through a back door hack. The real question is, can we trust these social networks with our private information?


It’s a great question and if anyone out there assumes the answer is yes, they are probably kidding themselves. It has amazed me on how much personal information people have been willing to share on Face Book. Some make it pretty easy for others to easily guess the password they use just to get into their account.
0

#6 User is offline   mail2ri 

  • Member
  • PipPip
  • Group: Members
  • Posts: 36
  • Joined: 05-December 10

  Posted 02 February 2013 - 08:38 PM

I believe the article completely misses the point. This was not a case of random Twitter a/cs being compromised because they had 'weak' passwords, but because Twitter didn't care to protect users' privacy by encrypting and storing passwords in the first place. Had it done so, no hacker would have found it so easy to repeatedly break into Twitter for such large scale intrusion. So, it's not Twitter users who are to blame, though they should be worried this can happen again, thanks to Twitter's callousness.
0

#7 User is offline   PwdRsch 

  • Newbie
  • Pip
  • Group: New Member
  • Posts: 1
  • Joined: 03-February 13

  Posted 03 February 2013 - 01:03 PM

Quote

Num2: The article completely ignores the fact that the passwords were basically given way by Twitter. No password no mater how strong or how often changed can save you in this case.


That's incorrect. Because twitter used a strong form of password hashing, the stronger (meaning less guessable) the password you used the less likely it is that bad guys will be able to crack it.

Even if my Twitter account had been among the compromised I would not have been concerned because my password was strong enough that it isn't crackable using current techniques or computing hardware.

Quote

mail2ri: This was not a case of random Twitter a/cs being compromised because they had 'weak' passwords, but because Twitter didn't care to protect users' privacy by encrypting and storing passwords in the first place.


You are correct that the account data wasn't accessed due to weak passwords, but due to a security breach at Twitter. However, Twitter did use a very strong method of 'encrypting' the passwords. Because they did so this makes it difficult for the bad guys to crack any but the very worst passwords chosen by users.

They protected your passwords better than some banks do, so give them credit for that.
0

#8 User is offline   Jay38 

  • Newbie
  • Pip
  • Group: New Member
  • Posts: 1
  • Joined: 03-February 13

  Posted 03 February 2013 - 02:18 PM

SplashData's SplashID Safe is a great password generation tool. It even has a reminder for password change schedule. It offers a lot of other advantages as a virtual safe to secure personal or even hundreds of confidential business record.
0

#9 User is offline   alreaud 

  • Full Member
  • PipPipPip
  • Group: Members
  • Posts: 72
  • Joined: 12-August 11

  Posted 08 February 2013 - 12:18 PM

A great password, actually passphrase, generator that is very easy to remember is Diceware, http://world.std.com...d/diceware.html

A few years ago, not having dice, I created an Excel spreadsheet, based on Diceware, that creates random passphrases. It's available at http://happycattech....-applications-0 in both Microsoft Excel and LibreOffice formats, under the GNU-GPL.

For better security, one sets up rules, only known to oneself, that is something like capitalize the first letter, the first o converts to a zero, or the first a converts to @, the first i to !, etc.
0

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users