Go Back   Freethought Forum > The Marketplace > Computers & Technology

Reply
 
Thread Tools Display Modes
  #1  
Old 12-03-2009, 06:30 PM
Zehava's Avatar
Zehava Zehava is offline
Captain #EmbraceTheImpossible
 
Join Date: May 2005
Location: Sandy, Oregon
Gender: Male
Posts: MMDCCCXXXVIII
Blog Entries: 1
Images: 151
Default password, 123456, #!comment:, changeme and Fuckyou

What do these words have in common?

They are the top 5 words used in brute force attempts at guessing passwords, from Microsoft via El Reg.

I've personally seen #1 and #2 on computers we use at the company where I work. We change them whenever we run across one, but who the hell knows how many computers are still on our network with weak local amin passwords.
__________________
The best way to make America great is to lower the standards!
Reply With Quote
  #2  
Old 12-03-2009, 10:41 PM
viscousmemories's Avatar
viscousmemories viscousmemories is offline
Admin
 
Join Date: Apr 2004
Location: Ypsilanti, Mi
Gender: Male
Posts: XXXDCCXLVII
Blog Entries: 1
Images: 9
Default Re: password, 123456, #!comment:, changeme and Fuckyou

I've seen 1, 2 and 4. I've never seen 3 or 5. I don't even understand 3 actually.
Reply With Quote
  #3  
Old 12-03-2009, 10:55 PM
Potato's Avatar
Potato Potato is offline
You are number 6!
 
Join Date: Aug 2007
Location: There
Gender: Female
Posts: CXLI
Default Re: password, 123456, #!comment:, changeme and Fuckyou

None of those meet the minimum password requirements where I work.

People really use "123456" eh?
Reply With Quote
  #4  
Old 12-04-2009, 12:42 AM
Corona688's Avatar
Corona688 Corona688 is offline
Forum Killer
 
Join Date: Aug 2004
Posts: MVCII
Default Re: password, 123456, #!comment:, changeme and Fuckyou

That's amazing! I've got the same one on my luggage!
__________________
Reply With Quote
Thanks, from:
Anastasia Beaverhausen (12-04-2009), BrotherMan (12-04-2009), Crumb (12-04-2009), curses (12-04-2009), Dingfod (12-04-2009), Kael (12-04-2009), Megatron (12-05-2009), Naru (12-04-2009), Pan Narrans (12-04-2009), slimshady2357 (12-04-2009), The Man (01-22-2010), Ymir's blood (12-04-2009), Zehava (12-04-2009)
  #5  
Old 12-04-2009, 03:47 PM
Zehava's Avatar
Zehava Zehava is offline
Captain #EmbraceTheImpossible
 
Join Date: May 2005
Location: Sandy, Oregon
Gender: Male
Posts: MMDCCCXXXVIII
Blog Entries: 1
Images: 151
Default Re: password, 123456, #!comment:, changeme and Fuckyou

Quote:
Originally Posted by Potato View Post
None of those meet the minimum password requirements where I work.

People really use "123456" eh?
Yes they do, and frankly we still use that here for certain users (i.e. the company truck drivers) who have trouble even powering on a computer. Of course that is just a temporary password and they must change it whenever they log on.
__________________
The best way to make America great is to lower the standards!
Reply With Quote
  #6  
Old 12-04-2009, 12:48 AM
lisarea's Avatar
lisarea lisarea is offline
Solitary, poor, nasty, brutish, and short
 
Join Date: Jul 2004
Posts: XVMMMDCXLII
Blog Entries: 1
Images: 3
Default Re: password, 123456, #!comment:, changeme and Fuckyou

This is a really gross generalization, but it seems to me that the more arcane and ridiculous a company's regular employee password requirements are, the more likely it is that they've got production machines lying around with either default or stupidly easy root passwords.

I don't know why that is. But you should totally try it, Potato.
Reply With Quote
Thanks, from:
BrotherMan (12-04-2009), ceptimus (12-04-2009), Stormlight (12-04-2009), The Man (01-22-2010), Zehava (12-04-2009)
  #7  
Old 12-04-2009, 12:49 AM
Qingdai's Avatar
Qingdai Qingdai is offline
Dogehlaugher -Scrutari
 
Join Date: Jan 2007
Location: Northwest
Gender: Female
Posts: XVDLXVII
Images: 165
Default Re: password, 123456, #!comment:, changeme and Fuckyou

I've been guilty of using "password" before, but it was nearly immpossible to change my password on some system, without getting locked out of every other program on the server. Then I'd have to call the systems guy, who charges by the hour and so on.

I'm guessing #comment is in a format, such as a comment section in a newspaper?
Reply With Quote
  #8  
Old 12-04-2009, 12:52 AM
Qingdai's Avatar
Qingdai Qingdai is offline
Dogehlaugher -Scrutari
 
Join Date: Jan 2007
Location: Northwest
Gender: Female
Posts: XVDLXVII
Images: 165
Default Re: password, 123456, #!comment:, changeme and Fuckyou

In other words, I agree with Lisarea. AGAIN.
Reply With Quote
Thanks, from:
lisarea (12-04-2009)
  #9  
Old 12-04-2009, 12:54 AM
BrotherMan's Avatar
BrotherMan BrotherMan is offline
A Very Gentle Bort
 
Join Date: Jan 2005
Location: Bortlandia
Gender: Male
Posts: XVMMXX
Blog Entries: 5
Images: 63
Default Re: password, 123456, #!comment:, changeme and Fuckyou

Sucks, doesn't it.
__________________
\V/_
I COVLD TEACh YOV BVT I MVST LEVY A FEE
Reply With Quote
  #10  
Old 12-04-2009, 01:12 AM
Ensign Steve's Avatar
Ensign Steve Ensign Steve is offline
California Sober
 
Join Date: Jul 2004
Location: Silicon Valley
Gender: Bender
Posts: XXXMMCLXV
Images: 66
Default Re: password, 123456, #!comment:, changeme and Fuckyou

We seriously had Password1 as the root password on the ET web page for months. It was the only thing all the developers could remember.
__________________
:kiwf::smurf:
Reply With Quote
  #11  
Old 12-04-2009, 01:31 AM
Deadlokd's Avatar
Deadlokd Deadlokd is offline
Not as smart as Adam
 
Join Date: Apr 2007
Location: Queensland
Gender: Male
Posts: MXCCXXX
Images: 21
Default Re: password, 123456, #!comment:, changeme and Fuckyou

No one will ever guess my password! Not that they need to, they can just read it off the monitor.
__________________
Don't pray in my school and I won't think in your church.
Reply With Quote
Thanks, from:
Dingfod (12-04-2009), Stormlight (12-04-2009)
  #12  
Old 12-04-2009, 01:34 AM
Ensign Steve's Avatar
Ensign Steve Ensign Steve is offline
California Sober
 
Join Date: Jul 2004
Location: Silicon Valley
Gender: Bender
Posts: XXXMMCLXV
Images: 66
Default Re: password, 123456, #!comment:, changeme and Fuckyou

library!
__________________
:kiwf::smurf:
Reply With Quote
Thanks, from:
Kael (12-04-2009)
  #13  
Old 12-04-2009, 01:59 AM
Ari's Avatar
Ari Ari is offline
I read some of your foolish scree, then just skimmed the rest.
 
Join Date: Jan 2005
Location: Bay Area
Gender: Male
Posts: XMDCCCLXXIV
Blog Entries: 8
Default Re: password, 123456, #!comment:, changeme and Fuckyou

After fighting with an Oracle upgrade at work my GF changed her (non admin account) password to Fuckyou2.
Reply With Quote
  #14  
Old 12-04-2009, 02:07 AM
Dingfod's Avatar
Dingfod Dingfod is offline
A fellow sophisticate
 
Join Date: Jul 2004
Location: Cowtown, Kansas
Gender: Male
Blog Entries: 21
Images: 92
Default Re: password, 123456, #!comment:, changeme and Fuckyou

I'm going through all the cars I've owned in my life. I'm up to 75-Landcruiser now. That means about 20 more before I start recycling them.
Reply With Quote
  #15  
Old 12-04-2009, 02:09 AM
Ymir's blood's Avatar
Ymir's blood Ymir's blood is offline
Coffin Creep
 
Join Date: Sep 2004
Location: The nightmare realm
Posts: XXXDCCCIII
Images: 67
Default Re: password, 123456, #!comment:, changeme and Fuckyou

I used to have all the security questions on one site answered, "fuckoff____" with the space being whatever noun the site was asking for.
__________________
Much of MADNESS, and more of SIN, and HORROR the soul of the plot.
Reply With Quote
Thanks, from:
The Man (01-22-2010), Zehava (12-04-2009)
  #16  
Old 12-04-2009, 02:50 AM
lisarea's Avatar
lisarea lisarea is offline
Solitary, poor, nasty, brutish, and short
 
Join Date: Jul 2004
Posts: XVMMMDCXLII
Blog Entries: 1
Images: 3
Default Re: password, 123456, #!comment:, changeme and Fuckyou

There's some kind of (COMPLETELY ACCURATE) theory that there's a point of diminishing returns from strict password policies, because the more frequently you make users change them and the more convoluted the requirements are, the more people will just write them on sticky notes and leave them right there on their monitors. Which, yeah. I've seen that.

Also done that.

Maybe #!comment; is a generic password like cypherfreak or something?
Reply With Quote
Thanks, from:
The Man (01-22-2010)
  #17  
Old 12-04-2009, 02:53 AM
Ymir's blood's Avatar
Ymir's blood Ymir's blood is offline
Coffin Creep
 
Join Date: Sep 2004
Location: The nightmare realm
Posts: XXXDCCCIII
Images: 67
Default Re: password, 123456, #!comment:, changeme and Fuckyou

Quote:
Originally Posted by lisarea View Post
There's some kind of (COMPLETELY ACCURATE) theory that there's a point of diminishing returns from strict password policies, because the more frequently you make users change them and the more convoluted the requirements are, the more people will just write them on sticky notes and leave them right there on their monitors. Which, yeah. I've seen that.
My employer makes people change their passwords for the pay info website, every month. I think at least half of the office is currently locked out of the site, myself included. I kept up with it for awhile but finally decided that the site wasn't worth it and just quit changing the password.
__________________
Much of MADNESS, and more of SIN, and HORROR the soul of the plot.
Reply With Quote
  #18  
Old 12-04-2009, 02:52 AM
SharonDee's Avatar
SharonDee SharonDee is offline
Member
 
Join Date: Jul 2004
Location: Nashville, TN
Gender: Female
Posts: VMDCCXLII
Blog Entries: 2
Images: 60
Default Re: password, 123456, #!comment:, changeme and Fuckyou

OMG. In a fit of temper last week I used fuckyou69 at some job-related "gimme new password" nag and I don't remember which one. I haven't been asked for that particular password yet so it's all good. I guess.
__________________
__________________
Reply With Quote
  #19  
Old 12-04-2009, 03:50 AM
BrotherMan's Avatar
BrotherMan BrotherMan is offline
A Very Gentle Bort
 
Join Date: Jan 2005
Location: Bortlandia
Gender: Male
Posts: XVMMXX
Blog Entries: 5
Images: 63
Default Re: password, 123456, #!comment:, changeme and Fuckyou

Where I used to work they required a password of at least 8 characters in length with at least one capital and at least one number or punctuation mark, no repeating letters or numbers and no consecutive numbers or letters and it couldn't be a derivation on the previous passwords you've used. What I would do is find a good password generator (I like the Firefox extension for this as you could make it right or left side only) and generate dozens of passwords at a time, print them out to keep handy in the wallet or sommit. The last series I made for myself using Excel and the =rand() function.
__________________
\V/_
I COVLD TEACh YOV BVT I MVST LEVY A FEE
Reply With Quote
Thanks, from:
The Man (01-22-2010)
  #20  
Old 12-04-2009, 03:58 AM
lisarea's Avatar
lisarea lisarea is offline
Solitary, poor, nasty, brutish, and short
 
Join Date: Jul 2004
Posts: XVMMMDCXLII
Blog Entries: 1
Images: 3
Default Re: password, 123456, #!comment:, changeme and Fuckyou

You could also use a password manager like KeePass to generate and store passwords under a single master password, and keep it on a thumb drive or summat.
Reply With Quote
Thanks, from:
Shake (12-04-2009), The Man (01-22-2010)
  #21  
Old 12-04-2009, 12:50 PM
Watser?'s Avatar
Watser? Watser? is offline
Fishy mokey
 
Join Date: Jul 2006
Location: Furrin parts
Posts: LMMMDXCI
Default Re: password, 123456, #!comment:, changeme and Fuckyou

Quote:
Originally Posted by lisarea View Post
You could also use a password manager like KeePass to generate and store passwords under a single master password, and keep it on a thumb drive or summat.
I've got LastPass, a Firefox addon. It makes it a lot easier if you use more than one computer as well because it remembers what you did on both.
__________________
:typingmonkey:
Reply With Quote
Thanks, from:
lisarea (12-04-2009), The Man (01-22-2010)
  #22  
Old 12-04-2009, 01:37 PM
slimshady2357's Avatar
slimshady2357 slimshady2357 is offline
forever in search of dill pickle doritos
 
Join Date: Jul 2004
Posts: VMCV
Blog Entries: 6
Images: 52
Default Re: password, 123456, #!comment:, changeme and Fuckyou

If someone forgets their password repeatedly at work, my boss will set it to 'remember' so that they... well... remember it :lol:

One lady phoned up a couple of weeks ago and asked if there was a way she could change her password, she didn't like having it as 'remember'. Why?

Wait for it.........
Reply With Quote
Thanks, from:
The Man (01-22-2010)
  #23  
Old 12-05-2009, 01:08 AM
Ari's Avatar
Ari Ari is offline
I read some of your foolish scree, then just skimmed the rest.
 
Join Date: Jan 2005
Location: Bay Area
Gender: Male
Posts: XMDCCCLXXIV
Blog Entries: 8
Default Re: password, 123456, #!comment:, changeme and Fuckyou

Quote:
Originally Posted by slimshady2357 View Post
Actually that's a good technique. A few of my passwords are normal words that are misspelled. Less chance a dictionary crack will break them, but I can still easily remember what they are.
Reply With Quote
  #24  
Old 12-04-2009, 02:05 PM
viscousmemories's Avatar
viscousmemories viscousmemories is offline
Admin
 
Join Date: Apr 2004
Location: Ypsilanti, Mi
Gender: Male
Posts: XXXDCCXLVII
Blog Entries: 1
Images: 9
Default Re: password, 123456, #!comment:, changeme and Fuckyou

Quote:
Originally Posted by Watser? View Post
Quote:
Originally Posted by lisarea View Post
You could also use a password manager like KeePass to generate and store passwords under a single master password, and keep it on a thumb drive or summat.
I've got LastPass, a Firefox addon. It makes it a lot easier if you use more than one computer as well because it remembers what you did on both.
I've been using RoboForm for a few weeks.

The Good: There is a version of RoboForm and its related synchronization software for my home PC, for my iPhone, and another for the U3 Smart platform on my USB key. Thus I have all my passwords available to me on all the devices I commonly use.

The Bad: I didn't realize it was free only for a trial period and ridiculously overpriced (with separate licenses required for each piece on each device) after that, so it has been nagging me and/or failing to work lately.

I'm not sure what I'll do now. I used to use KeePass but the mobility was never great with that one. With RoboForm all I have to do is set a new password and sync it with their online service, then I have it everywhere.
Reply With Quote
  #25  
Old 12-04-2009, 04:44 PM
BrotherMan's Avatar
BrotherMan BrotherMan is offline
A Very Gentle Bort
 
Join Date: Jan 2005
Location: Bortlandia
Gender: Male
Posts: XVMMXX
Blog Entries: 5
Images: 63
Poll Re: password, 123456, #!comment:, changeme and Fuckyou

Quote:
Originally Posted by ceptimus View Post
Please feel free to use this tip or some variant of it. I don't require payment for the advice :wink: You can send any donations to :ff: should you feel the need. :nod:
Quote:
Originally Posted by roastelk View Post
Ive solved this problem by simply never knowing what any of my passwords actually are. every password I use consists of one starting point and a pattern.

if I wrote a 2w in my password note book, my password would be 2wsxdr5tgbhu8

2vV = 2wsxdr5TGBHU8
:qhax:
:leetcrab:
__________________
\V/_
I COVLD TEACh YOV BVT I MVST LEVY A FEE
Reply With Quote
Thanks, from:
livius drusus (12-04-2009), The Man (01-22-2010)
Reply

  Freethought Forum > The Marketplace > Computers & Technology


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

 

All times are GMT +1. The time now is 12:43 AM.


Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Page generated in 0.40006 seconds with 13 queries