TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

12 character passwords found to be far superior to 8 characters

3 点作者 arch_hunter将近 15 年前

8 条评论

teilo将近 15 年前
In other news: A recent study has found that wool parkas found protect one from the cold far better than short sleeve shirts.
Vitaly将近 15 年前
not sure what are all those dismissive comments are about. the news here is that it become exceptionally EASY to brute-force an 8 character password. 8char passwords did provide the security for a while, but it seems they don't anymore. Equipment built from off the shelf components (and not too many of them) can break such passwords today. I'm sure it will soon be used not just by NSA but by almost anyone, including some 'recovery' businesses.
boomka将近 15 年前
This is idiocy. There is no system in existence that I know of where you will be allowed to sit and try millions of passwords.<p>About the only place I can think of is encrypted partitions, when you somehow obtained the physical drive. But that usually has other, additional security mechanisms in place.<p>After failure number 5 most systems just lock the account. All the requirements on password complexity are sheer idiocy.
评论 #1624497 未加载
GiraffeNecktie将近 15 年前
Worst researched article ever.<p><i>A website called Password Safe will store a list of passwords for you, but Boyd and Davis said it may still be possible for a hacker to obtain that list.</i><p>PasswordSafe is a software program (created by Bruce Schneir) that stores your passwords on your own computer. It is not a website for storing passwords.
holman将近 15 年前
<i>But when the researchers applied that same processing power to 12-character passwords, they found it would take 17,134 years to make them snap.</i><p>I love how they position this as some sort of strenuous discovery and not simple math.
petrilli将近 15 年前
Who knew CNN had Captain Obvious working for them?
mhd将近 15 年前
But as always, you can compensate for lack of length BY BEING LOUD (not for the whole time) and/or being exceptionally (00L.
nostromo将近 15 年前
Just do what I do: use an 8 character random password... twice.