Wednesday, February 26, 2014
Choosing a Secure Password
The best way to explain how to choose a good password is to explain how they're broken. The general attack model is what’s known as an offline password-guessing attack. In this scenario, the attacker gets a file of encrypted passwords from somewhere people want to authenticate to. His goal is to turn that encrypted file into unencrypted passwords he can use to authenticate himself. He does this by guessing passwords, and then seeing if they’re correct. He can try guesses as fast as his computer will process them – and he can parallelize the attack – and gets immediate confirmation if he guesses correctly. Yes, there are ways to foil this attack, and that's why we can still have four-digit PINs on ATM cards, but it's the correct model for breaking passwords.
More from The minute somebody turns it on,
I go to the library and read a book."
- Groucho Marx
More from The minute somebody turns it on,
I go to the library and read a book."
- Groucho Marx
Friends minutes and bylaws
Links
- Clark Library Blogs
- Friends FACEBOOK page
- Libgig- library jobs
- Albany Public Library
- The Friends of the Albany Public Library Link on the APL page - includes info on joining
- What's Happening at the APL
- Library of Congress blog
- American Library Association
- New York State Library
- New York Library Association
- Facts about Albany, NY
- Council of Albany Neighborhood Associations
- Biz Ref Desk -- land of the free and the good
- Urban Library Journal
- Resource Shelf
- Docuticker
- Google News
- This Liaison Life
Contributors
SiteMeter
Blog Archive
-
▼
2014
(165)
-
▼
February
(9)
- Choosing a Secure Password
- Lion King at First Presbyterian Church in Albany, ...
- Albany Public Library Expands Museum Pass Program
- CITY OF ALBANY SNOW EMERGENCY starts 2/14 at 8 pm
- Albany Public Library closing at 4 p.m. 2/13
- EXECUTIVE DIRECTOR SEARCH, Albany Public Library
- Parent workshop to focus on ADHD, Tuesday 2/11 in ...
- Snow Emergency in Albany, NY starts Th 2/6 at 8 pm
- Don't return calls from these area codes -- it's a...
-
▼
February
(9)