Passwords - be secure online.
Register

We are the best invite forum on the internet! Here you will find free invites, free seedboxes, free bonuses, and much more. Our members know the true meaning of sharing and have created a truly global bittorent community! Our site has the most up to date information on all private trackers and our members will guide you and introduce you to this truly secretive and enlightened club. Ready to get started? Register now!


Results 1 to 8 of 8
Like Tree2Likes
  • 2 Post By JamesG

Thread: Passwords - be secure online.

  1. #1

    Join Date
    Apr 2011
    Location
    Could be anywhere.
    Posts
    1,499

    Default Passwords - be secure online.

    Found this interesting article on passwords and how long it takes to hack different lengths, combinations of lower and upper case and also numbers & symbols. Pretty interesting i thought.

    Source Bloomberg Business Week
    Most-used passwords: 123456, password, 12345678, qwerty, abc123

    Time it takes a hacker's computer to randomly guess your password:

    Length: 6 characters
    Lowercase: 10 minutes
    + Uppercase: 10 hours
    + Nos. & Symbols: 18 days

    Length: 7 characters
    Lowercase: 4 hours
    + Uppercase: 23 days
    + Nos. & Symbols: 4 years

    Length: 8 characters
    Lowercase: 4 days
    + Uppercase: 3 years
    + Nos. & Symbols: 463 years



    Length: 9 characters
    Lowercase: 4 months
    + Uppercase: 178 years
    + Nos. & Symbols: 44,530 years

    Average amount it costs a business to field a phone call requesting a password reset: $10
    Proportion of help desk calls that are password-related: 30%
    Users who choose a common word or simple key combination for a password: 50%
    Last edited by JamesG; April 25th, 2011 at 08:58 AM.
    lynkin and Night_Crawler like this.


  2. To remove ads become VIP. Inquire about advertising here.
  3. #2

    Join Date
    May 2009
    Location
    Canada
    Posts
    1,484
    Blog Entries
    1

    Default Re: Passwords - be secure online.

    I wouldn't call this a tutorial, so I've moved it to computers. Anyhow, this is only assuming brute force methods work. My server will ban you for hours if you don't get it right the first several times and then I am notified via email instantly. If the user's IP is unrecognized and they were trying to get into something of high risk then I can the ban to permanent.
    Retired and happy :)

  4. #3

    Join Date
    Apr 2011
    Location
    Could be anywhere.
    Posts
    1,499

    Default Re: Passwords - be secure online.

    Didn't know where to post it. Just thought it was interesting. thanks

  5. #4

    Join Date
    Jul 2011
    Location
    InsideTheFusioN
    Posts
    32

    Default Re: Passwords - be secure online.

    i did a test , so to guess my password you will need 139.001.123.119 years with a i7 core. my pass is 12 digits with Uppercase, lowercase, special characters and numbers :DD


  6. #5

    Join Date
    Jun 2010
    Location
    Tampa, FL
    Posts
    256

    Default Re: Passwords - be secure online.

    Quote Originally Posted by ElFusioN View Post
    i did a test , so to guess my password you will need 139.001.123.119 years with a i7 core. my pass is 12 digits with Uppercase, lowercase, special characters and numbers :DD
    Wow! What's your password? ...jk!

    I use Last Pass and it creates difficult passwords that I don't have to memorize. It can be used with most browsers so you can sync it will all your computers. Setting it up is also pretty simple, it can retrieve saved passwords from your browser or any other password programs such as Roboform.

    The Easy, Any-Browser, Any-OS Password Solution

  7. #6

    Join Date
    Jul 2011
    Posts
    24

    Default Re: Passwords - be secure online.

    Yes last pass is a very good addom for the browser and secure , because all connections are encrypted

  8. #7

    Join Date
    Jul 2011
    Location
    Middle of Nowhere, NC
    Posts
    25

    Default Re: Passwords - be secure online.

    The 'article' is very misleading as it doesnt explain anything. The numbers they give could be right, but are no where near definitive.

    Bruteforcing a website login is stupid and impractical, so any article that takes that into account needs new journalists. Most of the good ones will explain that your password is only hackable if the database containing your password info is stolen. This will contain your hash and also likely any salts. If the website is using a plain MD5 algorithm then you'll have your account lost within 7 days even if its up to around 18 characters. Why? Rainbow Tables. MD5 hashes are non-unique.
    So when it encrypts "horse" it will always encrypt it to the same string. Rainbow tables are just precomputed databases of these and they're free or you can buy them (or rather buy the hard drives). Assuming the password isnt in the rainbow tables, MD5 passwords can be bruteforced at 2billion/sec with a simple I7. The highest I've seen has been 38 trillion/sec with GPUs.
    If they use MD5 and salts, then rainbow tables are useless. They need to try to collide (match) each test. So if you put your password in as "horse" the salt is what is added onto it before computing. The salts for vBulletin (the forum software here) is usually 4 characters long and random. So while you can login with "horse" the actual password encrypted in the database is more like "horseId31". So if they only have your hash they cannot crack it.


    I could write a more indepth thing, but my fingers hurt for now. If you want to actually know more I could try to find time.

  9. #8

    Join Date
    Feb 2011
    Posts
    553

    Default Re: Passwords - be secure online.

    ^That was interesting, Flygon, thank you. At your leisure, if you'd like to type a more in-depth explanation, I for one would be very interested in learning more.

    As for LastPass, I tried that for a day or two but ultimately went back to using KeePass and KeeFox. I tried roboform for a few days also but all the login information was stored in a very easy to find folder and even when I secured those login files, I could still see them there and was able to access them.

Similar Threads

  1. BitMe - Passwords and Security-IMPORTANT
    By stefySOFT in forum BitTorrent News
    Replies: 1
    Last Post: November 15th, 2011, 08:35 PM
  2. Passwords and Security at Bitme tracker
    By Baskey in forum BitTorrent News
    Replies: 0
    Last Post: August 1st, 2011, 12:00 AM
  3. Replies: 1
    Last Post: July 27th, 2011, 07:03 AM
  4. Different types of security online
    By Insidious9 in forum Help
    Replies: 3
    Last Post: July 22nd, 2011, 07:44 PM
  5. Replies: 8
    Last Post: July 29th, 2009, 09:15 AM

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •