Go Back   Wireless and Wifi Forums > News > Newsgroups > alt.computer.security
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 08-15-2009, 04:48 PM
socrtwo
Guest
 
Posts: n/a
Default Blaming the Victims

The purveyors of security love to blame password issues on the general
public, but this is unrealistic. An average person simply cannot
remember more than a few passwords without the aid of "insecure"cheat
sheets" and those they can remember will have probably some
weaknesses. The computer industry should stop blaming the victims and
instead speed up development of alternate ways of "verifying user
identities".

Reply With Quote
  #2 (permalink)  
Old 08-16-2009, 02:22 AM
David H. Lipman
Guest
 
Posts: n/a
Default Re: Blaming the Victims

From: "socrtwo" <socrtwo@gmail.com>

| The purveyors of security love to blame password issues on the general
| public, but this is unrealistic. An average person simply cannot
| remember more than a few passwords without the aid of "insecure"cheat
| sheets" and those they can remember will have probably some
| weaknesses. The computer industry should stop blaming the victims and
| instead speed up development of alternate ways of "verifying user
| identities".

That's what I've been saying about having many passwords and complex ones like requiring
14 digits, 2 upper, 2 lower , 2 number and 2 special.

There come a point when increasing the complexity does not improve security, indeed, it
decreases it. Security is decreased when the passworrds are too complex and the user has
to write them down.

I hate arm chair quaterbacks that make the rules but do NOT see what's really going on.


--
Dave
http://www.claymania.com/removal-trojan-adware.html
Multi-AV - http://www.pctipp.ch/downloads/dl/35905.asp



Reply With Quote
  #3 (permalink)  
Old 08-16-2009, 02:55 PM
Noah Davids
Guest
 
Posts: n/a
Default Re: Blaming the Victims

David H. Lipman wrote:
> From: "socrtwo" <socrtwo@gmail.com>
>
> | The purveyors of security love to blame password issues on the general
> | public, but this is unrealistic. An average person simply cannot
> | remember more than a few passwords without the aid of "insecure"cheat
> | sheets" and those they can remember will have probably some
> | weaknesses. The computer industry should stop blaming the victims and
> | instead speed up development of alternate ways of "verifying user
> | identities".
>
> That's what I've been saying about having many passwords and complex ones like requiring
> 14 digits, 2 upper, 2 lower , 2 number and 2 special.
>
> There come a point when increasing the complexity does not improve security, indeed, it
> decreases it. Security is decreased when the passworrds are too complex and the user has
> to write them down.
>
> I hate arm chair quaterbacks that make the rules but do NOT see what's really going on.
>
>

I use one password concatenated with the URL of the site I am connecting
to (or the host name) run though a hash function. It is unique to each
site/computer has numbers, symbols, upper and lower case letters is
impossible to remember and I never have to write it down.

Reply With Quote
  #4 (permalink)  
Old 08-16-2009, 11:37 PM
Leythos
Guest
 
Posts: n/a
Default Re: Blaming the Victims

In article <e1c6e678-0983-4f21-8685-
fb00d0de6a3c@z34g2000vbl.googlegroups.com>, socrtwo@gmail.com says...
>
> The purveyors of security love to blame password issues on the general
> public, but this is unrealistic. An average person simply cannot
> remember more than a few passwords without the aid of "insecure"cheat
> sheets" and those they can remember will have probably some
> weaknesses. The computer industry should stop blaming the victims and
> instead speed up development of alternate ways of "verifying user
> identities".


You are completely incorrect.

In the old days I would buy lunch for anyone in the shop who's password
I could not break in a couple hours - since I ran the department it was
perfectly in compliance with our policy to test password strength.

I only had to purchase lunch a couple times a year and we changed
passwords every 30 days - only had to reset a password once in several
years.

Most people take the easy way out - they create weak passwords because
they don't really CARE, and that's what gets them into trouble, lack of
caring.


--
You can't trust your best friends, your five senses, only the little
voice inside you that most civilians don't even hear -- Listen to that.
Trust yourself.
spam999free@rrohio.com (remove 999 for proper email address)

Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Daubergate Rape Scandal 2008! Gary \Puto Militar Grande\ Burns \(Meth Pusher\) alt.cellular.verizon 0 09-27-2008 03:00 PM
Daubergate Rape Scandal 2008! Gary \Puto Militar Grande\ Burns \(Meth Pusher\) alt.cellular.sprintpcs 0 09-27-2008 03:00 PM
Daubergate Rape Scandal 2008! Gary \Puto Militar Grande\ Burns \(Meth Pusher\) alt.cellular.verizon 0 09-27-2008 03:00 PM
Daubergate Rape Scandal 2008! Gary \Puto Militar Grande\ Burns \(Meth Pusher\) alt.cellular.sprintpcs 0 09-27-2008 03:00 PM
Boycott Nebraska (Until Rapists Are Brought To Justice) Suckasaurus Rex USMC \(NE OQH188\) alt.cellular.nextel 1 02-15-2008 02:11 PM


All times are GMT. The time now is 07:09 AM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45