Security Basics mailing list archives

Re: Password Management


From: Ansgar -59cobalt- Wiechers <bugtraq () planetcobalt net>
Date: Wed, 26 Apr 2006 13:25:43 +0200

On 2006-04-24 cv.arun () yahoo com wrote:
Microsoft recently released a link to help you choose
"good passwords"

http://www.microsoft.com/athome/security/privacy/password_checker.mspx

Which is absolutely ridiculous. Pages like this one tell users that it's
okay to enter their passwords into web-forms as long as they have
"password-check" written on them.

And about "good passwords":

alwobljrrekcoaloenyalwz -> weak
Password                -> medium
Password1               -> strong

Yeah, right.

Regards
Ansgar Wiechers
-- 
"All vulnerabilities deserve a public fear period prior to patches
becoming available."
--Jason Coombs on Bugtraq

-------------------------------------------------------------------------
This List Sponsored by: Webroot

Don't leave your confidential company and customer records un-protected. 
Try Webroot's Spy Sweeper Enterprise(TM) for 30 days for FREE with no 
obligation. See why so many companies trust Spy Sweeper Enterprise to 
eradicate spyware from their networks.
FREE 30-Day Trial of Spy Sweeper Enterprise

http://www.webroot.com/forms/enterprise_lead.php
--------------------------------------------------------------------------


Current thread: