Home Discord Chat
Go Back   ChiefsPlanet > Nzoner's Game Room > Media Center
Register FAQDonate Members List Calendar

Reply
 
Thread Tools Display Modes
Old 03-09-2021, 07:53 PM  
frozenchief frozenchief is offline
Cynical Misanthrope
 
Join Date: Apr 2013
Location: Alaska
Security

Stumbled across this today. Something to consider when creating passwords.

I am not seeking to advertise the company, in part because I know nothing about the company but I figured I'd pass on the information. I expect that as computing power increases, those figures will decline. When I'm 87, my password will have to be something like

pleasegetmemoredependsbecausethesearefullofcrap1234*

Posts: 3,919
frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.frozenchief is obviously part of the inner Circle.
  Reply With Quote
Old 03-09-2021, 10:48 PM   #2
vailpass vailpass is offline
Psycho Bag Of Squanch
 
Join Date: Sep 2001
You think this is bad? Just wait til they get quantum hacking going. Anything without quantum crypto will be instant toast.
Posts: 69,591
vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.
    Reply With Quote
Old 03-09-2021, 10:56 PM   #3
Fish Fish is offline
Ain't no relax!
 
Join Date: Sep 2005
Or infinitely better.... enable multifactor authentication.
Posts: 47,591
Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.Fish is obviously part of the inner Circle.
Thumbs Up 4 Thumbs Down 0     Reply With Quote
Old 03-09-2021, 11:44 PM   #4
Why Not? Why Not? is online now
In Search of a Life
 
Join Date: Apr 2013
Location: Kansas
I got no dog in the fight because according to this, it will take hackers 2 trillion years to get to me but, I wonder how they would "show their work" so to speak? I don't know shit about technology outside of how to get on CP and check my email so I'm not saying this is wrong, just seems like one of those things you could just throw out there and assume you would never get fact checked on.
Posts: 21,760
Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.Why Not? is obviously part of the inner Circle.
    Reply With Quote
Old 03-10-2021, 09:45 AM   #5
tmax63 tmax63 is offline
Veteran
 
Join Date: Apr 2007
Location: Colorado
I'd assume that hacking programs start with "a" or "1" and progress sequentially through the possibilities. Does that mean if you started your passwords with "z" or "9" it would take longer for them to hack?
Posts: 3,811
tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.tmax63 Forgot to Remove His Claytex and Got Toxic Shock Syndrome.
    Reply With Quote
Old 03-10-2021, 10:34 AM   #6
htismaqe htismaqe is offline
'Tis my eye!
 
Join Date: Aug 2000
Location: Chiefsplanet
Quote:
Originally Posted by tmax63 View Post
I'd assume that hacking programs start with "a" or "1" and progress sequentially through the possibilities. Does that mean if you started your passwords with "z" or "9" it would take longer for them to hack?
Technically no.
Posts: 100,022
htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.
    Reply With Quote
Old 03-10-2021, 10:35 AM   #7
htismaqe htismaqe is offline
'Tis my eye!
 
Join Date: Aug 2000
Location: Chiefsplanet
Quote:
Originally Posted by Why Not? View Post
I got no dog in the fight because according to this, it will take hackers 2 trillion years to get to me but, I wonder how they would "show their work" so to speak? I don't know shit about technology outside of how to get on CP and check my email so I'm not saying this is wrong, just seems like one of those things you could just throw out there and assume you would never get fact checked on.
CPU cycles are just mathematical increments.
Posts: 100,022
htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.
    Reply With Quote
Old 03-10-2021, 10:37 AM   #8
htismaqe htismaqe is offline
'Tis my eye!
 
Join Date: Aug 2000
Location: Chiefsplanet
Quote:
Originally Posted by vailpass View Post
You think this is bad? Just wait til they get quantum hacking going. Anything without quantum crypto will be instant toast.
The already use botnet "clouds" to do it. The biggest thing is that you're not as likely a target as say, Target.
Posts: 100,022
htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.
    Reply With Quote
Old 03-10-2021, 11:41 AM   #9
vailpass vailpass is offline
Psycho Bag Of Squanch
 
Join Date: Sep 2001
Quote:
Originally Posted by htismaqe View Post
The already use botnet "clouds" to do it. The biggest thing is that you're not as likely a target as say, Target.
I was more thinking of DOD and critical infrastructure
crypto but yeah.

Just salting the hashes isn't going to cut it soon.
Posts: 69,591
vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.vailpass is obviously part of the inner Circle.
    Reply With Quote
Old 03-10-2021, 11:51 AM   #10
morphius morphius is offline
World's finest morphius
 
Join Date: Aug 2000
What this is telling me that I'd probably be pretty safe to do a 15 lower case letter password and they could hack it when I'm dead. Not sure about their numbers here, with bot nets, phishing and other viruses they have other ways to gain access as well.
Posts: 25,973
morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.morphius is obviously part of the inner Circle.
    Reply With Quote
Old 03-10-2021, 12:07 PM   #11
HayWire HayWire is offline
Retired Bearcat
 
Join Date: Dec 2011
Location: SWMO
Next time I say something stupid on CP I'm going to pull a celebrity move and say I was hacked. That's right, **** you Bearcat.

oops, that wasn't me.
Posts: 7,434
HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.HayWire threw an interception on a screen pass.
    Reply With Quote
Old 03-10-2021, 01:56 PM   #12
htismaqe htismaqe is offline
'Tis my eye!
 
Join Date: Aug 2000
Location: Chiefsplanet
Quote:
Originally Posted by vailpass View Post
I was more thinking of DOD and critical infrastructure
crypto but yeah.

Just salting the hashes isn't going to cut it soon.
Exactly. The DoD already gets hacked on a frequent basis. Security is an endless nightmare if you're responsible for it and a gravy train if you get paid to do it.
Posts: 100,022
htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.
    Reply With Quote
Old 03-10-2021, 01:58 PM   #13
htismaqe htismaqe is offline
'Tis my eye!
 
Join Date: Aug 2000
Location: Chiefsplanet
Quote:
Originally Posted by morphius View Post
What this is telling me that I'd probably be pretty safe to do a 15 lower case letter password and they could hack it when I'm dead. Not sure about their numbers here, with bot nets, phishing and other viruses they have other ways to gain access as well.
I use randomly-generated passwords - 20 characters with upper, lower, numerals, and a select few specials (ones that are universally acceptable).

I also store all of my passwords in an encrypted database.
Posts: 100,022
htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.htismaqe is obviously part of the inner Circle.
Thumbs Up 1 Thumbs Down 0     Reply With Quote
Old 03-10-2021, 02:06 PM   #14
unlurking unlurking is offline
MVP
 
Join Date: Aug 2003
Obligatory XKCD...



Cool password generator based off the comic, but beware using it. The dictionary used is available and small. My current rig can crack all variations of the WEB16 and NTLM (default length options) in seconds. Currently testing masks for the DEFAULT, estimating 21-28 days.
https://xkpasswd.net/s/
Posts: 10,620
unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.
    Reply With Quote
Old 03-10-2021, 02:22 PM   #15
unlurking unlurking is offline
MVP
 
Join Date: Aug 2003
Also, while this chart is a good opening comment about security. it is SUPER subjective and not nearly detailed enough for a true discussion of what makes a secure password. Those numbers are based on "brute-force" attacks which attempt every possible variation in a character data set. It completely ignores non brute-force attacks, speed of guesses, and ease of guessing the type of hash.


You wouldn't believe how many passwords I see like Spring-2002! or GoBroncos!2002 (obvious assholes) or Ch13f$Rule!!! All of which crack in seconds using basic rule and mask attacks but people still think nobody will figure it out.
Posts: 10,620
unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.unlurking Forgot to Remove His Claytex and Got Toxic Shock Syndrome.
    Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On

Forum Jump




All times are GMT -6. The time now is 07:05 AM.


Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2024, vBulletin Solutions, Inc.