http://i.imgur.com/vsGXk.png
http://i.qkme.me/367mb9.jpg
Printable View
Marcus225@gmail.com
dolfin756
2132
Rate?
^ 10!
I r pass security expert! I r rate u a 10!
legit as hell, but they don't allow you to type your pass :P
one of my passes (not saying which one) is i9t69uf4823^#%$0%$9fhasn1zx
all the others are similar B) , although not for rs cuz I don't play lol
^ No user, or bank pin. I hav to give u a 3.
^ not runescape, give your reading skillz 0
http://imgs.xkcd.com/comics/password_strength.png
Better to use a phrase than random characters man.
You're basing cracking off password character size
to guess an all text a-z A-Z it is like 4GB file, no problem at all..
my passwords are usually 200 characters, special characters, words, numbers, letters, caps, etc those take 100+GB files to crack along with a long ass time
and it's easy as shit for me to remember, I'm not some 90 year old who can barely remember 5 letter password
for example, some of my database user passwords are like:
76876%T&^%TR*&tG*67sar76d9fads6tR#$&%!T89Y(*FHG(US DT8ydtgas9-du7g-&(*t0ATGYSG)8d6ars6drdfw21g
Also, just to add, the main security threat is someone guessing a password, not someone brute forcing it.. brute forcing is pretty much dead. There's almost nothing that doesn't lock accounts out, lock IP's out, disable accounts.. after so many guesses etc.
Why would I remember a password that programs use?
find a keyboard style you like, and generate passwords with it
for example, keyboard opposites
q1 p0
those are opposite side of keyboard
lets make a password with those, while going inward and capitalizing every other letter and shift every number on every 3 skips:
q1p0W2O9e#i*R4U7t5y6
extremely easy to remember.
q1p0W2O9e#i*R4U7t5y6
not copied and pasted ^ typed in 10 seconds about
I have some 20+ character passwords I can type in a few seconds, they're very random and make no sense looking at them but where your fingers move to is an extremely obvious pattern (once you know the password)
the example there is crappy & slow to type, however.. just find a fancy method maybe draw a square with each of your hands on the keyboard or something :P
That's how all my passwords are, don't find my secret drawing on the keyboard and hax0r me =[
I've 5-9 digit passwords which can be typed in 1 sec (not kidding) and have never ever been hacked. The chance of guessing a password (username aside) within limits of getting locked is so slim that almost no one actually got hacked due to password being guessed. (mostly keyloggers etc)
I agree, I always had short passwords till about 3-4 years ago I figured out designing stuff on the keyboard is a good way to make ridiculously overpowered passwords.. that are easy (for me at least) to type & remember
almost all accounts stolen are a form of keylogging, brute forcing is almost dead, in fact it's laughed at in hacking communities 99% of the time, some stuff is still able to get brute forced but it really isn't that great of a tool vs most
A password I use to use, props if you know why I used it. Guess I am turning into an old gezer
@red@BuyingRuneSets200k!
lol, I'm old enough to remember that spam if that's what you mean xD
I beg to differ.. Brute forcing is never dead and never will die. No one I know laughs at it. Infact, it's still used to hack WEP and quite a bit of things.
That's like saying Lookup tables are dead. It's still a sorta brute force and it's used to reverse hashes and stuff. I personally still use John The Ripper and PattyCow for certain things.
If there is no sufficient exploit or algorithm, brute force/dictionary attacks are most likely the way to go.. So whoever looks down on it has a lot to learn. I think Crackers look down on it.. I doubt a hacker would.
INB4 Wizzup's Cracker vs. Hacker thingy ;)
EDIT: I refuse to make a new post..
@Grats:
I'd love to see you packet sniff Mixed-Mode WEP and successfully crack it without BruteForce. In case you don't know, those are the ridiculously expensive linksys routers that switch modes and sometimes broadcasting channels when too many packets are requested.Quote:
You hack WEP with brute forcing? how terribly inefficient
Also I have yet to be on a private DNS / private IP / TOR hacking site where brute forcing isn't laughed at
Also like I said. Anyone laughing at bruteforce or lookup tables is new to the game.