Welcome to the Second Life Forums Archive

These forums are CLOSED. Please visit the new forums HERE

How many characters in your password?

Nina Stepford
was lied to by LL
Join date: 26 Mar 2007
Posts: 3,373
08-05-2009 08:49
if you dont use it for anything, will you share it? i am curious about this. i have made a fair effort to create a secure passwd and am curious how it stacks.
From: Ceera Murakami
I still remember the password I used for that class, many years later, even though I have never used that specific password for anything other than that one-shot class exercise.
_____________________
SLU - ban em then bash em!
~~GREATEST HITS~~
pro-life? gtfo! slu- banning opposing opinions one at a time
http://www.sluniverse.com/php/vb/zomgwtfbbqgtfololcats/15428-disingenuous.html
learn to shut up and nod in agreement... or be banned!
http://www.sluniverse.com/php/vb/off-topic/1239-americans-not-stupid.html
LittleMe Jewell
...........
Join date: 8 Oct 2007
Posts: 11,319
08-05-2009 09:23
From: Innula Zenovka
Assuming someone has a case-sensitive password comprising 6 alpha-numeric characters, that's 62^6 (or 56, 800, 235, 584) possible combinations. I'm sure that's readily crackable -- at least assuming you don't trip some sort of security precuation if you have too many wrong guesses -- with a fast computer, but, in reality, how great a risk is it someone's going to try it?
What if the 6 alpha-numeric characters are 'adam12'? I found out than many police officers use that password (harley1 is the other most common one) -- though not where I work anymore cuz I put in stronger rules.





From: Briana Dawson
Argent...

Some days you really, really scare me and make me worry about you.
Only **some** days?

:D
_____________________
♥♥♥
-Lil

Why do you sit there looking like an envelope without any address on it?
~Mark Twain~

Optimism is denial, so face the facts and move on.
♥♥♥
Lil's Yard Sale / Inventory Cleanout: http://slurl.com/secondlife/Triggerfish/52/27/22
.
http://www.flickr.com/photos/littleme_jewell
Ceera Murakami
Texture Artist / Builder
Join date: 9 Sep 2005
Posts: 7,750
08-05-2009 09:43
From: Nina Stepford
if you dont use it for anything, will you share it? i am curious about this. i have made a fair effort to create a secure passwd and am curious how it stacks.

Ai1wlU41

And there's a way I have for making that indecypherable and unpronouncable mess extremely easy to memorize and recall.

The method that produced that password is several years old. My current pasword method is even harder to crack.
_____________________
Sorry, LL won't let me tell you where I sell my textures and where I offer my services as a sim builder. Ask me in-world.
Lolita Pro
www.PhotosByLolita.com
Join date: 30 Oct 2006
Posts: 273
08-05-2009 10:03
more than 9, mixture of numbers and letters, no real words, no phonetic spellings of words, no references to anything remotely personal.

I used to work in the hotel biz ... so my password is a particular city code (not my own or anywhere I lived), the code for a specific hotel within that city, and a random date I used to use to pull up the hotel info in the computer.

Good luck ... start cracking.
Kidd Krasner
Registered User
Join date: 1 Jan 2007
Posts: 1,938
08-05-2009 11:09
From: Gabriele Graves
I use a One Time Password (OTP) generator to create my passwords and they are long.
I don't bother to remember them but have all my logins stored in a PDA which encrypts the lot with strong encryption and gives me access on a 4 digit PIN. Yes the PDA is backed up, encrypted backups and the PC sync program also stores the data encrypted and demands a PIN login to access but allows me to quickly cut and paste my login passwords.
All I have to do is remember my PIN and update the PC program or PDA with a changed password and the next sync does the rest.

Neeto hmmm?

I do the same, except a 4 digit PIN is silly! If your PDA is lost or stolen, someone could break in easily, just by being patient - unless your system is designed to lock up after some number of wrong guesses.

I've been using eWallet by Ilium Software. It has a password generator that lets you configure the length, character set choices, whether to make it pronounceable, and whether to come up with a mnemonic sentence to help remember the password. You need to enter a master password to access it, you can set a timeout limit after which it closes automatically. All I'll say about my master password is that it has more than digits, and that it's longer than 4.
Zoha Boa
Registered User
Join date: 12 Mar 2007
Posts: 2,893
08-05-2009 11:52
This post reminds me of a RL customer who called me that he lost his password for the accounting program.

It was the first name of has wife ....


BTW: my password is +9 charachters long
_____________________
ZoHa Islands: SL Real Estate Management since 2007
Looking for land ? You will find it @ ZoHa Islands !

Orange Beach Mall: 50 000 sqm shopping fun



http://slurl.com/secondlife/ZoHa%20Islands/222/227/27
website: http://www.ZoHa-Islands.com
Gabriele Graves
Always and Forever, FULL
Join date: 23 Apr 2007
Posts: 6,205
08-05-2009 14:57
From: Kidd Krasner
I do the same, except a 4 digit PIN is silly! If your PDA is lost or stolen, someone could break in easily, just by being patient - unless your system is designed to lock up after some number of wrong guesses.
Indeed after 3 wrong guesses my PDA locks and has to be hard reset and restored from backup. ATM cards use a 4 digit PIN, so does my house alarm system so why do I need anything extra for less important things? My PDA cannot be even logged in without a different 4 digit PIN, which also locks after 3 goes, that is before you even run the password program. Yah, I think I am covered OK.

EDIT: Removed due to being wrong.
_____________________

Trout Rating: I'm giving you an 8.2 on the Troutchter Earth-Movement Slut Scale. You are an amazing, enchanting woman, and, when the situation calls for it, a slut of the very best sort. Congratulations and shame on you!
Kidd Krasner
Registered User
Join date: 1 Jan 2007
Posts: 1,938
08-05-2009 15:10
From: Gabriele Graves
Indeed after 3 wrong guesses my PDA locks and has to be hard reset and restored from backup. ATM cards use a 4 digit PIN, so does my house alarm system so why do I need anything extra for less important things? My PDA cannot be even logged in without a different 4 digit PIN, which also locks after 3 goes, that is before you even run the password program. Yah, I think I am covered OK.

The hard lockup probably solves the problem. The same is true for many ATMs - they'll eat the card. (I don't know whether they still do this; it's been a long time since I've heard of this happening to anyone.) Someone who's really clever might be able to get through the PDA's security to access the password database - by opening it up and working with the chip directly on a custom circuit board. Highly unlikely unless you're a target of spies, but there's a lot of technology out there for breaking ATM cards.

But less important? Break an ATM PIN, and you get one or two accounts, with a limit on daily withdrawals. Break a password vault - assuming you have all your passwords here - and you get into all your online accounts, work passwords, email passwords, etc. The risk is huge.
Kidd Krasner
Registered User
Join date: 1 Jan 2007
Posts: 1,938
08-05-2009 15:18
From: Gabriele Graves


EDIT: F.Y.I. a 4 digit pin has (obviously) 1000 different combinations, my PDA allows one try every 5 secs (up to 3 max) - even without the limit that would take approximately 3.47 days of constantly trying a different number every 5 seconds to eventually be able to crack it. Remember too that this cannot be automated like it can on a desktop computer, it has to be through the touch screen.

It's 10,000. But every 5 seconds is 12/minute, 720/hour, which is roughly 14 hours. And I don't mean to pick on you for typos or math errors; we all do those. (My first thought was 20/minute.) The point is that security isn't something to treat casually.
Gabriele Graves
Always and Forever, FULL
Join date: 23 Apr 2007
Posts: 6,205
08-05-2009 15:21
From: Kidd Krasner
The hard lockup probably solves the problem. The same is true for many ATMs - they'll eat the card. (I don't know whether they still do this; it's been a long time since I've heard of this happening to anyone.) Someone who's really clever might be able to get through the PDA's security to access the password database - by opening it up and working with the chip directly on a custom circuit board. Highly unlikely unless you're a target of spies, but there's a lot of technology out there for breaking ATM cards.

But less important? Break an ATM PIN, and you get one or two accounts, with a limit on daily withdrawals. Break a password vault - assuming you have all your passwords here - and you get into all your online accounts, work passwords, email passwords, etc. The risk is huge.
If I lose my PDA, the first thing I will be doing is sitting down at my computer and changing my Bank, SL and email passwords first just in case. After that I am not so bothered, it is all low risk stuff without even any personal information I am concerned about.

The time taken to get through the front door of my PDA and then crack the ecnryption on the storage to get at the passwords would give me a huge breathing space of time to do this I think.

I think my strategy is sound, even with 4 digits PINs.
_____________________

Trout Rating: I'm giving you an 8.2 on the Troutchter Earth-Movement Slut Scale. You are an amazing, enchanting woman, and, when the situation calls for it, a slut of the very best sort. Congratulations and shame on you!
Snickers Snook
Odd Princess - Trout 7.3
Join date: 17 Apr 2007
Posts: 746
08-05-2009 15:44
My password is an entire paragraph from an obscure 17th century Latin liturgy so I selected 9+. :D
_____________________

Buh-bye forums, it's been good ta know ya.
Gabriele Graves
Always and Forever, FULL
Join date: 23 Apr 2007
Posts: 6,205
08-05-2009 15:47
From: Kidd Krasner
It's 10,000. But every 5 seconds is 12/minute, 720/hour, which is roughly 14 hours. And I don't mean to pick on you for typos or math errors; we all do those. (My first thought was 20/minute.)
Oooops, thanks for the catch there, you are of course right :) Don't quite know what happened there :o

From: Kidd Krasner
The point is that security isn't something to treat casually.
I hardly think my system qualifies as taking security casually, more the opposite in fact.
_____________________

Trout Rating: I'm giving you an 8.2 on the Troutchter Earth-Movement Slut Scale. You are an amazing, enchanting woman, and, when the situation calls for it, a slut of the very best sort. Congratulations and shame on you!
Ceka Cianci
SuperPremiumExcaliburAcc#
Join date: 31 Jul 2006
Posts: 4,489
08-05-2009 15:54
Schfifty five

http://www.youtube.com/watch?v=-XccUMOQ978
_____________________
Argent Stonecutter
Emergency Mustelid
Join date: 20 Sep 2005
Posts: 20,263
08-05-2009 15:59
Where's the "unsee" button?
_____________________
Argent Stonecutter - http://globalcausalityviolation.blogspot.com/

"And now I'm going to show you something really cool."

Skyhook Station - http://xrl.us/skyhook23
Coonspiracy Store - http://xrl.us/coonstore
Oscar Wylder
Thales Infinity V2
Join date: 10 Mar 2009
Posts: 82
08-05-2009 16:05
opensaysme
_____________________
If it's got tits or tires its going to cost ya sooner or later.
Oscar Wylder
Thales Infinity V2
Join date: 10 Mar 2009
Posts: 82
08-05-2009 16:06
uhh .. 10 carackters !

Do I win a cookie ?
_____________________
If it's got tits or tires its going to cost ya sooner or later.
Oscar Wylder
Thales Infinity V2
Join date: 10 Mar 2009
Posts: 82
08-05-2009 16:10
No no ..



like durr ! !


/me goes and changes password ..


...

.
_____________________
If it's got tits or tires its going to cost ya sooner or later.
Anya Ristow
Vengeance Studio
Join date: 21 Sep 2006
Posts: 1,243
08-05-2009 19:57
My password is "pass". Why do you ask?
_____________________
The Vengeance Studio Gadget Store is closed!

Mitzy Shino
can i haz ur stufz?
Join date: 15 Dec 2006
Posts: 409
08-05-2009 20:55
I have no idea what length mine is, I typed it in once long ago and haven't had to type it again since!

Thank god for that little remember password thingy...

Now excuse me while I go off and find some bleach....

*laughs*
_____________________
Bound Estates - 4096 - 65536 sqm - Homesteads/Full Prim Islands - Reasonable Prices - Helpful Staff - Visit our Office to check out what we have available now,
http://slurl.com/secondlife/Triphosa/21/130/52

My Ramblings: http://boundestates/ramblings/
Looli Vella
( ~^_^)~
Join date: 9 Feb 2007
Posts: 148
08-05-2009 22:56
From: LittleMe Jewell
What if the 6 alpha-numeric characters are 'adam12'? I found out than many police officers use that password (harley1 is the other most common one) -- though not where I work anymore cuz I put in stronger rules.


Once, while up to no good, a co-worker and I discovered that three of the directors in our national office were still using the default password for their email accounts, i.e. password. THREE!

As for mine, it's a full paragraph from an ancient Sanskrit text, rescued from the muck of the Ganges eons ago. It takes me a full half hour to log in every time, but it's worth it for the peace of mind!
Looli Vella
( ~^_^)~
Join date: 9 Feb 2007
Posts: 148
08-05-2009 22:58
From: Snickers Snook
My password is an entire paragraph from an obscure 17th century Latin liturgy so I selected 9+. :D


Whoa. Weird religious text password joke jinx. What are the chances?
Snickers Snook
Odd Princess - Trout 7.3
Join date: 17 Apr 2007
Posts: 746
08-06-2009 00:19
From: Looli Vella
Whoa. Weird religious text password joke jinx. What are the chances?
I wuz firstz!!! You owez me a Coke!
_____________________

Buh-bye forums, it's been good ta know ya.
Tegg Bode
FrootLoop Roo Overlord
Join date: 12 Jan 2007
Posts: 5,707
08-06-2009 00:54
I could tell but then I'd have to kill you :)
_____________________
Level 38 Builder [Roo Clan]

Free Waterside & Roadside Vehicle Rez Platform, Desire (88, 17, 107)

Avatars & Roadside Seaview shops and vendorspace for rent, $2.00/prim/week, Desire (175,48,107)
Pserendipity Daniels
Assume sarcasm as default
Join date: 21 Dec 2006
Posts: 8,839
08-06-2009 03:21
I just use ordinary Welsh words. The paucity of vowels tends to confuse hackers, as does the fact that Welsh words have a nasty habit of changing their initial letters. :cool:

eg Llanfairpwllgwyngyllgogerychwyrndrobwllllantysiliogogogoch

Pep (Actually, using correctly spelled English words would work, given the general level of illiteracy.)
_____________________
Hypocrite lecteur, — mon semblable, — mon frère!
Jack42 Meredith
Registered User
Join date: 18 Dec 2007
Posts: 418
08-06-2009 04:16
ok what did everyone use as there password? everyone tell us your password :D this is just a poll to see the creative ideas for passwords :D
1 2 3