3 ms·
users have million sites where they have logins and passwords - they can't have million password - even pattern can be guessed. If the risk is to low it's ok to
by kwdowicz 18y ago
users have million sites where they have logins and passwords - they can't have million password - even pattern can be guessed. If the risk is to low it's ok to not use HTTPS. But some blurring would give positive results - as like some hackers commented already.
- rplevy 18y agoOne approach is to invent a mnemonic system for constructing secure passwords. The passwords should be systematically related to the specific site (including variables that are only known or relevant to you), but the patten should not be obvious to anyone but yourself (and memorable enough that the passwords & method of constructing do not need to be explicitly recorded). This makes it possible to have a unique password for every site. As a further foil to anyone who might somehow crack the pattern, use different mental password construction algorithms for sites with different levels of perceived security importance (although then it is easier to get confused).
- jsteele 18y agoA million's a big number. As a User, I'd have to say that a hundred or so passwords sounds about right - and I live online 24/7. For most users - a dozen, tops.
- thaumaturgy 18y ago| For most users - a dozen, tops. "Most" users have trouble remembering even one password. Rightly or wrongly, it's hard to get the average computer user interested in security.