[ ]   [ ]   [ ]                        [ ]      [ ]   [ ]

Ask an Atheist - Steely_D - Apr 19, 2024 - 11:53am
 
Trump - rgio - Apr 19, 2024 - 11:10am
 
• • • The Once-a-Day • • •  - oldviolin - Apr 19, 2024 - 10:42am
 
NYTimes Connections - Bill_J - Apr 19, 2024 - 9:34am
 
Joe Biden - oldviolin - Apr 19, 2024 - 8:55am
 
NY Times Strands - geoff_morphini - Apr 19, 2024 - 8:39am
 
Baseball, anyone? - ScottFromWyoming - Apr 19, 2024 - 8:23am
 
Wordle - daily game - geoff_morphini - Apr 19, 2024 - 8:23am
 
Country Up The Bumpkin - KurtfromLaQuinta - Apr 19, 2024 - 7:55am
 
2024 Elections! - black321 - Apr 19, 2024 - 7:51am
 
Radio Paradise Comments - Coaxial - Apr 19, 2024 - 6:20am
 
how do you feel right now? - miamizsun - Apr 19, 2024 - 6:02am
 
When I need a Laugh I ... - miamizsun - Apr 19, 2024 - 5:43am
 
Remembering the Good Old Days - miamizsun - Apr 19, 2024 - 5:41am
 
Today in History - DaveInSaoMiguel - Apr 19, 2024 - 4:43am
 
The Obituary Page - kurtster - Apr 18, 2024 - 10:45pm
 
TV shows you watch - kcar - Apr 18, 2024 - 9:13pm
 
Israel - R_P - Apr 18, 2024 - 8:25pm
 
Live Music - oldviolin - Apr 18, 2024 - 3:24pm
 
What Makes You Laugh? - oldviolin - Apr 18, 2024 - 2:49pm
 
Robots - miamizsun - Apr 18, 2024 - 2:18pm
 
Song of the Day - oldviolin - Apr 18, 2024 - 10:22am
 
Museum Of Bad Album Covers - Steve - Apr 18, 2024 - 6:58am
 
April 2024 Photo Theme - Happenstance - haresfur - Apr 17, 2024 - 7:04pm
 
Europe - haresfur - Apr 17, 2024 - 6:47pm
 
Name My Band - GeneP59 - Apr 17, 2024 - 3:27pm
 
What's that smell? - Isabeau - Apr 17, 2024 - 2:50pm
 
USA! USA! USA! - R_P - Apr 17, 2024 - 1:48pm
 
Business as Usual - black321 - Apr 17, 2024 - 1:48pm
 
Things that make you go Hmmmm..... - dischuckin - Apr 17, 2024 - 1:29pm
 
Talk Behind Their Backs Forum - VV - Apr 17, 2024 - 1:26pm
 
Russia - R_P - Apr 17, 2024 - 1:14pm
 
Science in the News - Red_Dragon - Apr 17, 2024 - 11:14am
 
Magic Eye optical Illusions - Proclivities - Apr 17, 2024 - 10:08am
 
Ukraine - kurtster - Apr 17, 2024 - 10:05am
 
Photography Forum - Your Own Photos - Alchemist - Apr 17, 2024 - 9:38am
 
Just for the Haiku of it. . . - oldviolin - Apr 17, 2024 - 9:01am
 
HALF A WORLD - oldviolin - Apr 17, 2024 - 8:52am
 
Little known information... maybe even facts - R_P - Apr 16, 2024 - 3:29pm
 
songs that ROCK! - thisbody - Apr 16, 2024 - 10:56am
 
260,000 Posts in one thread? - oldviolin - Apr 16, 2024 - 10:10am
 
WTF??!! - rgio - Apr 16, 2024 - 5:23am
 
Australia has Disappeared - haresfur - Apr 16, 2024 - 4:58am
 
Earthquake - miamizsun - Apr 16, 2024 - 4:46am
 
It's the economy stupid. - miamizsun - Apr 16, 2024 - 4:28am
 
Republican Party - Isabeau - Apr 15, 2024 - 12:12pm
 
Vinyl Only Spin List - kurtster - Apr 14, 2024 - 11:59am
 
Eclectic Sound-Drops - thisbody - Apr 14, 2024 - 11:27am
 
Synchronization - ReggieDXB - Apr 13, 2024 - 11:40pm
 
Other Medical Stuff - geoff_morphini - Apr 13, 2024 - 7:54am
 
What Did You See Today? - Steely_D - Apr 13, 2024 - 6:42am
 
Photos you have taken of your walks or hikes. - KurtfromLaQuinta - Apr 12, 2024 - 3:50pm
 
Things You Thought Today - Red_Dragon - Apr 12, 2024 - 3:05pm
 
Poetry Forum - oldviolin - Apr 12, 2024 - 8:45am
 
Dear Bill - oldviolin - Apr 12, 2024 - 8:16am
 
Radio Paradise in Foobar2000 - gvajda - Apr 11, 2024 - 6:53pm
 
Mixtape Culture Club - ColdMiser - Apr 11, 2024 - 8:29am
 
New Song Submissions system - MayBaby - Apr 11, 2024 - 6:29am
 
No TuneIn Stream Lately - kurtster - Apr 10, 2024 - 6:26pm
 
Caching to Apple watch quit working - email-muri.0z - Apr 10, 2024 - 6:25pm
 
April 8th Partial Solar Eclipse - Alchemist - Apr 10, 2024 - 10:52am
 
Bug Reports & Feature Requests - orrinc - Apr 10, 2024 - 10:48am
 
NPR Listeners: Is There Liberal Bias In Its Reporting? - black321 - Apr 9, 2024 - 2:11pm
 
Sonos - rnstory - Apr 9, 2024 - 10:43am
 
RP Windows Desktop Notification Applet - gvajda - Apr 9, 2024 - 9:55am
 
If not RP, what are you listening to right now? - kurtster - Apr 8, 2024 - 10:34am
 
And the good news is.... - thisbody - Apr 8, 2024 - 3:57am
 
How do I get songs into My Favorites - Huey - Apr 7, 2024 - 11:29pm
 
Pernicious Pious Proclivities Particularized Prodigiously - R_P - Apr 7, 2024 - 5:14pm
 
Lyrics that strike a chord today... - Isabeau - Apr 7, 2024 - 12:50pm
 
Dialing 1-800-Manbird - oldviolin - Apr 7, 2024 - 11:18am
 
Why is Mellow mix192kbps? - dean2.athome - Apr 7, 2024 - 1:11am
 
Musky Mythology - haresfur - Apr 6, 2024 - 7:11pm
 
China - R_P - Apr 6, 2024 - 11:19am
 
Artificial Intelligence - R_P - Apr 5, 2024 - 12:45pm
 
Index » Radio Paradise/General » General Discussion » Passwords Page: Previous  1, 2, 3  Next
Post to this Topic
Servo

Servo Avatar

Location: Down on the Farm
Gender: Male


Posted: Aug 11, 2011 - 10:24pm

 aflanigan wrote:
And if the people who target the things you want to keep secure figure out that this is your MO, they will sooner or later successfully mount a social engineering attack by tricking tech support into sending them your temp password.
 
Oh ye of little humor...

First off, if they give it away, it's not my problem.  Second, Big Business websites tend to be more for the benefit of the code monkeys who continually talk middle management into buying the latest expensive new "must have" toys.  Customers like me are going back to 800 numbers because they're actually easier, faster, and a better source of details.

oldviolin

oldviolin Avatar

Location: esse quam videri
Gender: Male


Posted: Aug 11, 2011 - 4:12pm

 Manbird wrote:

Why do you hate allenfunt so much? I see you didn't use that as your password. 
 
smile
Manbird

Manbird Avatar

Location: ? ? ?
Gender: Male


Posted: Aug 11, 2011 - 12:58pm

 justlistening wrote:
my password is

allenludden
 
for everything.  except when i use

bettywhite.
 
 
But seriously.  I only have 4 passwords and mnemonically they all make sense to me so I can remember.  I make subtle variations to them all at the same time so that I can figure out the changes. I do this about every 4 months.
 
If I use credit cards on line I use a card that allows "virutal card numbers" that expire.  This way my real card number is never stored anywhere.
 
But I'm an engineer geek
edit:
I agree with the previous post by kurster and never let the browser remember for me
 
Why do you hate allenfunt so much? I see you didn't use that as your password. 
aflanigan

aflanigan Avatar

Location: At Sea
Gender: Male


Posted: Aug 11, 2011 - 12:01pm

 Servo wrote:
The best passwords are:

1. As long as possible.  The longer it is, the longer it takes to crack by brute force.

2.  As random as possible.  This foils even the most sophisticated dictionary attacks.

3.  Using every legal character possible.  If the attacker's character set doesn't have the symbol that Prince used, they're not getting in.

My passwords are, for all intents and purposes, unbreakable.

Of course I couldn't possibly remember any of them.  So my login procedure is to call and say "I forgot my password"  every time. {#Mrgreen}

 

And if the people who target the things you want to keep secure figure out that this is your MO, they will sooner or later successfully mount a social engineering attack by tricking tech support into sending them your temp password.
Servo

Servo Avatar

Location: Down on the Farm
Gender: Male


Posted: Aug 10, 2011 - 3:15pm

The best passwords are:

1. As long as possible.  The longer it is, the longer it takes to crack by brute force.

2.  As random as possible.  This foils even the most sophisticated dictionary attacks.

3.  Using every legal character possible.  If the attacker's character set doesn't have the symbol that Prince used, they're not getting in.

My passwords are, for all intents and purposes, unbreakable.

Of course I couldn't possibly remember any of them.  So my login procedure is to call and say "I forgot my password"  every time. {#Mrgreen}


justlistening

justlistening Avatar

Location: So. California
Gender: Male


Posted: Aug 10, 2011 - 10:49am

my password is

allenludden
 
for everything.  except when i use

bettywhite.
 
 
But seriously.  I only have 4 passwords and mnemonically they all make sense to me so I can remember.  I make subtle variations to them all at the same time so that I can figure out the changes. I do this about every 4 months.
 
If I use credit cards on line I use a card that allows "virutal card numbers" that expire.  This way my real card number is never stored anywhere.
 
But I'm an engineer geek
edit:
I agree with the previous post by kurster and never let the browser remember for me

islander

islander Avatar

Location: West coast somewhere
Gender: Male


Posted: Aug 10, 2011 - 10:44am

 kurtster wrote:
We have all our user names and passwords on a word document and just copy and paste whenever needed.  Passwords can be as easy or as complicated as needed.  We never let our puters remember for easy logins.  The word document is buried pretty deep and does not have an obvious title like passwords for those that might make it into the network.

No worry about key logger stuff, no looking for sticky notes.  Keep all the security question answers there as well.  Can never remember upper or lower case and all that crap.

Been doing this for at least 8 or 9 years and it has worked very, very well.

Even have a seperate user for surfing unknown or crazy places.  Dump cookies and history before and after religiously.  Have our own users for safe places like here so we don't have to dump stuff all the time.
 
keypass (http://keepass.info/) or some other similar encrypted db for passwords is a far better solution that works in a similar fashion. 
Umberdog

Umberdog Avatar

Location: In my body.
Gender: Male


Posted: Aug 10, 2011 - 10:44am

I use this...

function random_password($length=10)
{
  $pw = NULL;
  $n  = 1;
  do {
    do {
      $c = chr(mt_rand(33,122));
    } while (strpos(" "',.01:;Ol\_`<", $c) <> 0 || $c == chr(ord($x)-1) || $c == $x || $c == chr(ord($x)+1));
    $pw .= $c;
    $x = $c;
  } while ($n++ < $length);
  return $pw;
}

aflanigan

aflanigan Avatar

Location: At Sea
Gender: Male


Posted: Aug 10, 2011 - 10:43am

 winter wrote:

Sure, except for the part where those are a lot harder to memorize. It's a tradeoff.

 

Perzackly.  The more secure you make things (from passwords to cyphers to access to money), the less convenient you make them for users.


aflanigan

aflanigan Avatar

Location: At Sea
Gender: Male


Posted: Aug 10, 2011 - 10:41am

 kurtster wrote:
We have all our user names and passwords on a word document and just copy and paste whenever needed.  Passwords can be as easy or as complicated as needed.  We never let our puters remember for easy logins.  The word document is buried pretty deep and does not have an obvious title like passwords for those that might make it into the network.

No worry about key logger stuff, no looking for sticky notes.  Keep all the security question answers there as well.  Can never remember upper or lower case and all that crap.

Been doing this for at least 8 or 9 years and it has worked very, very well.

Even have a seperate user for surfing unknown or crazy places.  Dump cookies and history before and after religiously.  Have our own users for safe places like here so we don't have to dump stuff all the time.

 

You're safe as long as noone ever gets into your system/hard drive via a trojan or other attack.  Probably fine if you live by yourself or with a trustworthy spouse/partner.  I would not rely on this if you have kids/teens.  Determined hackers who know what they are doing and gain access will not simply look for docs titled "Passwords, KEEP OUT", they'll copy everything they can find, including hidden files.

Maybe keep these docs on a removable drive.
winter

winter Avatar

Location: in exile, as always
Gender: Male


Posted: Aug 10, 2011 - 10:40am

 aflanigan wrote:

I think the math on the above cartoon is wrong.  The four "random" common words would be painfully easy to crack through brute force attack (computer randomly stringing together combos of words from the dictionary).  A password consisting of four actual random words would look like this:

fhbler  beiewsav  xdmwoq   mkzwgagfd
 
Sure, except for the part where those are a lot harder to memorize. It's a tradeoff.

Plus you could always use words from another language, made-up words that sound real but aren't, proper names - the dictionary attack is less easy than it seems, I think. 
aflanigan

aflanigan Avatar

Location: At Sea
Gender: Male


Posted: Aug 10, 2011 - 10:37am

 ptooey wrote:


 
I think the math on the above cartoon is wrong.  The four "random" common words would be painfully easy to crack through brute force attack (computer randomly stringing together combos of words from the dictionary).  A password consisting of four actual random words would look like this:

fhbler  beiewsav  xdmwoq   mkzwgagfd

kurtster

kurtster Avatar

Location: where fear is not a virtue
Gender: Male


Posted: Aug 10, 2011 - 10:28am

We have all our user names and passwords on a word document and just copy and paste whenever needed.  Passwords can be as easy or as complicated as needed.  We never let our puters remember for easy logins.  The word document is buried pretty deep and does not have an obvious title like passwords for those that might make it into the network.

No worry about key logger stuff, no looking for sticky notes.  Keep all the security question answers there as well.  Can never remember upper or lower case and all that crap.

Been doing this for at least 8 or 9 years and it has worked very, very well.

Even have a seperate user for surfing unknown or crazy places.  Dump cookies and history before and after religiously.  Have our own users for safe places like here so we don't have to dump stuff all the time.
Umberdog

Umberdog Avatar

Location: In my body.
Gender: Male


Posted: Aug 10, 2011 - 9:36am

My passwords are so creative I can't remember them. I figure if I can't get into my account nobody else will.
winter

winter Avatar

Location: in exile, as always
Gender: Male


Posted: Aug 10, 2011 - 9:26am

 cc_rider wrote:
Indeed. In the past I have used the same password for lots of sites, which was easy but dangerously insecure. Unsecure. Whatever.

 
Don't be insecure about your unsecurity. We're all secure enough here.
 
cc_rider

cc_rider Avatar

Location: Bastrop
Gender: Male


Posted: Aug 10, 2011 - 9:24am

 winter wrote:

I thought about that, but so many of them are locked into the whole "one symbol, one number, 8 characters, no consecutive characters or parts of your username" routine.

The main thing I dislike about passwords is the need to come up with new ones at every site. What that leads to is the need to keep a list of passwords - which is kind of risky in itself. I wish there was a better way to do security. 

  Indeed. In the past I have used the same password for lots of sites, which was easy but dangerously insecure. Unsecure. Whatever.


winter

winter Avatar

Location: in exile, as always
Gender: Male


Posted: Aug 10, 2011 - 9:16am

 cc_rider wrote:

I changed some of my passwords based on it. One site made me jump through their stupid hoops though. Doh!
 
I thought about that, but so many of them are locked into the whole "one symbol, one number, 8 characters, no consecutive characters or parts of your username" routine.

The main thing I dislike about passwords is the need to come up with new ones at every site. What that leads to is the need to keep a list of passwords - which is kind of risky in itself. I wish there was a better way to do security. 
cc_rider

cc_rider Avatar

Location: Bastrop
Gender: Male


Posted: Aug 10, 2011 - 9:12am

 winter wrote:

I saw that one this morning, too. Love it!

 
I changed some of my passwords based on it. One site made me jump through their stupid hoops though. Doh!

winter

winter Avatar

Location: in exile, as always
Gender: Male


Posted: Aug 10, 2011 - 8:43am

 ptooey wrote:


 
I saw that one this morning, too. Love it!
ptooey

ptooey Avatar

Location: right behind you. no, over there.
Gender: Male


Posted: Aug 10, 2011 - 7:11am




Page: Previous  1, 2, 3  Next