Bitcoin Forum

Other => Off-topic => Topic started by: Seal on January 11, 2012, 12:35:55 AM



Title: Gox password security
Post by: Seal on January 11, 2012, 12:35:55 AM
Anyone else think its laughable that the MtGox support websites password security is really strict and requires letters, (including a capital), numbers, non alphanumeric character and minimum length.... whereas the actual mtgox trading login only requires letters, numbers and a min length.

/minirant


Title: Re: Gox password security
Post by: Phinnaeus Gage on January 11, 2012, 12:38:01 AM
Anyone else think its laughable that the MtGox support websites password security is really strict and requires letters, (including a capital), numbers, non alphanumeric character and minimum length.... whereas the actual mtgox trading login only requires letters, numbers and a min length.

/minirant

I wonder if that's because one is salted, whereas the other is peppered.


Title: Re: Gox password security
Post by: naypalm on January 11, 2012, 10:52:51 PM
http://img843.imageshack.us/img843/9343/tourettesguy718310.jpg
bacon and eggs dear.


Title: Re: Gox password security
Post by: notme on January 11, 2012, 10:57:37 PM
Anyone else think its laughable that the MtGox support websites password security is really strict and requires letters, (including a capital), numbers, non alphanumeric character and minimum length.... whereas the actual mtgox trading login only requires letters, numbers and a min length.

/minirant

Most of these restrictions are working against security.  The best method is to have more bits.

"It turns out that long sentences make really good passwords that are easy to remember" is much harder to crack than "8$nfK/3".


Title: Re: Gox password security
Post by: jake262144 on January 11, 2012, 11:22:18 PM
I'll second Notme with this piece by xkcd:
https://i.imgur.com/IvJKK.png

(http://xkcd.com/936/)