masulum
Legendary
Offline
Activity: 2324
Merit: 1604
hmph..
|
|
July 04, 2019, 02:38:11 AM Merited by Mike Mayor (1) |
|
Suggestion formulas to create passwords easy to remember 1. last/first 2-3 character of fave goods near you and write with capslock (ball, chair, laptop, etc) 2. last/first 2 digits year for a memorial moment (graduation, resigned, etc) 3. Symbol (choose your favorites) 6. Number of your favorites players on football (caps/low) 7. initial of your fave players 8. end with two symbols (different symbol) 9. another initial for players mix low and caps lock Example: Goods: Ball, memorial years: 1991, Fave symbols: %, Fave players number: 03, Initial: mdn (for Paolo Maldini), another 2 symbols: !, another initial, pOlPasswords you can create like this: BAL91%03mdn!&pOl I hope it will be work for you guys. because it works for me
|
HOLD...
|
|
|
PrimeBitExchange
Jr. Member
Offline
Activity: 187
Merit: 3
|
|
July 04, 2019, 07:47:57 AM |
|
Just use a password generator and for example Last Pass to remember all the login and passwords. It is the safest option.
|
P2P crypto-products trading platform. Up to 200x leverage/ MetaTrader 5/ Affiliation up to 30%. Join now --> primebit.com
|
|
|
Pmalek
Legendary
Offline
Activity: 2954
Merit: 7554
Playgram - The Telegram Casino
|
|
July 04, 2019, 08:33:19 AM |
|
It is the safest option. It is A safer option but not the safest since hackers are targeting password managers just like any other software. According to new information published by Independent Security Evaluators (ISE), at least five popular password managers, including 1Password, Dashlane, KeePass and LastPass, could potentially leak unencrypted credentials and passwords while they're running in the background. Read this: https://www.komando.com/happening-now/547660/hackers-find-security-flaws-in-5-popular-password-managers-are-you-safeIf you have bad online practices, no software or password manager can help you. They can minimize the treat but most of it is down to the way the individual user is using the Internet.
|
|
|
|
▄▄███████▄▄███████ ▄███████████████▄▄▄▄▄ ▄████████████████████▀░ ▄█████████████████████▄░ ▄█████████▀▀████████████▄ ██████████████▀▀█████████ █████████████████████████ ██████████████▄▄█████████ ▀█████████▄▄████████████▀ ▀█████████████████████▀░ ▀████████████████████▄░ ▀███████████████▀▀▀▀▀ ▀▀███████▀▀███████ | ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄ Playgram.io ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀ | ▄▄▄░░ ▀▄ █ █ █ █ █ █ █ ▄▀ ▀▀▀░░
| │ | ▄▄▄███████▄▄▄ ▄▄███████████████▄▄ ▄███████████████████▄ ▄██████████████▀▀█████▄ ▄██████████▀▀███▄██▐████▄ ██████▀▀████▄▄▀▀█████████ ████▄▄███▄██▀█████▐██████ ██████████▀██████████████ ▀███████▌▐██▄████▐██████▀ ▀███████▄▄███▄████████▀ ▀███████████████████▀ ▀▀███████████████▀▀ ▀▀▀███████▀▀▀ | | │ | ██████▄▄███████▄▄████████ ███▄███████████████▄░░▀█▀ ███████████░█████████░░█ ░█████▀██▄▄░▄▄██▀█████░█ █████▄░▄███▄███▄░▄██████ ████████████████████████ ████████████████████████ ██░▄▄▄░██░▄▄▄░██░▄▄▄░███ ██░░░█░██░░░█░██░░░█░████ ██░░█░░██░░█░░██░░█░░████ ██▄▄▄▄▄██▄▄▄▄▄██▄▄▄▄▄████ ███████████████████████ ███████████████████████ | | │ | ► | |
[/
|
|
|
Mike Mayor
|
I've never had any accounts "hacked" what I have done though is lock myself out with these security options, how ironic right? I have however had people try to get into my accounts. Some is trying to get into my epic games account. My cointiply account has nothing in it even and someone keeps trying to get in. Noone got into either of these though. The password just kept resetting and sending to my email. No attempt has been made to get into my gmail account which I have owned for over 10 years now I think.
I basically just read a guide and used my common sense by thinking from a hackers perspective. So no personal links to anything like birthdays or hobbies just like the OP has said. I never use the same password over even use partly the same password. Each are unique I use bout 16 characters and use upper and lower case, numbers, symbols. I mix these up so I don't have two numbers together and I I try not to repeat a character.
Here are some examples of a password I would make.
J6f&E1p3%8*G2L*F#7
I also can't understand when I see bounty hunters asking managers to change their address because it was hacked. I think it must be phishing. Always verify any website you want to enter login info on using a whois website. Make sure the websites match up. If they don't then you will lose your account due to phishing. My eth account passwords are very long like a private key and I encrypt the place where I copy-paste the password from. I use nod32 antivirus. I always check and match the clipboard too. I do this at least 3x I also keep 3x backups of my personal info. 1 an usb the other 2 on external hdds. The folder in ecrypted and password protected using 7zip. I keep the password to the 7zip file written down in 3 different places 1 being my safe.
I am not saying I will never be hacked. What I am saying is that it would be very very difficult even with the best social engineering. Since everything is completely random not even I know my passwords or even part of them.
I am also pretty sure that being careful will take care of 99% potential hack attempts.
One last thing I do is I link my accounts with F2A and I link my accounts to my phone number or to IP address.
The IP address works very well. No other IP but mine can login to my website for example. They can try use a vpn it won't work since the need the exact IP.
Very nice guide.
Btw I looked through the posts here and there quite a few nice ones so I gave 3 of you some merits since you deserve them. I try to give them to nice posts I see and help people out.
|
|
|
|
Onuohakk
Member
Offline
Activity: 672
Merit: 29
|
|
September 17, 2019, 09:57:19 AM |
|
My advice is that, don't create password all because you want it to be hard for hackers to hack. Create password that will be easy for you to memorize. Always try and create a unique password you can store up in your brain and be able to login with it anytime of the day
|
|
|
|
LbtalkL
|
|
October 18, 2019, 11:39:06 PM |
|
Great Guide mate, I generate my password by smashing my keyboard with random Small and Capital letters, numbers, symbols and paste it on a notepad. I'm doing the traditional way. I don't trust password managers even if is it an opensource, What if it got hacked my all password will be exposed but I'm not against it, but it is a software maybe someone in the future will discover how to exploit it.
|
|
|
|
Annisa_crypto
Member
Offline
Activity: 128
Merit: 13
|
|
October 24, 2019, 10:21:21 AM |
|
Try to make the password longer which is better. For example- Mix of letters > lowecase/uppercase > symbols > numbers > don't give any personal information or any words of the dictionary. - Don't use the same password for every platform.
- Don't write your password anywhere keep it with you securely and there are some apps that are there where you can keep your password safely.
- Also, you can use some security tools which you will get it on google.
- Don't share your password with anyone
- At last keeps the password which is unique, easy to remember and hard to guess.
|
|
|
|
o_e_l_e_o
In memoriam
Legendary
Offline
Activity: 2268
Merit: 18747
|
|
October 24, 2019, 01:20:50 PM |
|
At last keeps the password which is unique, easy to remember and hard to guess. All your advice is good up to this last point, which is the wrong advice to give. A password which is easy to remember is easy to guess and easy to brute force. It's simple: Humans are bad at being random. This means we are bad at choosing passwords, passphrases, brain wallets, or anything similar. Don't even try. There's a reason that wallets generate a random seed for you and don't let you input your own (or at least, you have to use advanced configurations if you want to input your own, since it is very high risk). Use a proper password manager such as KeePass or Bitwarden to create truly random passwords and store them for you.
|
|
|
|
Negotiation
|
|
December 10, 2019, 10:56:44 AM |
|
I think I won't use any simple numbers to create a strong secure password. Then hackers can easily hack passwords. That's why if we use% *: with numbers when giving strong passwords, it will take a long time for them to hack their passwords. Not easy to do.
|
|
|
|
poochpocket
|
|
December 10, 2019, 11:12:42 AM |
|
I don't think password manager's could be trusted enough to generate a password for use, mostly when it has to be used for some thing very important or financial stuff.
Most of the people around tend to use same password on most of there user accounts online and they carry a risk of loosing all they have at a single cracking incidence so I would just advice not doing so, but its seems to be in human nature.
I think a manual randomly generated password could act in a more secure way than a generator.
|
|
|
|
o_e_l_e_o
In memoriam
Legendary
Offline
Activity: 2268
Merit: 18747
|
|
December 10, 2019, 11:42:39 AM |
|
That's why if we use% *: with numbers when giving strong passwords, it will take a long time for them to hack their passwords. Not really. If someone is going to bruteforce your password, then they will likely already being using the full ASCII character set. There's a lot more to a truly secure password than just throwing in a percentage sign somewhere. I think a manual randomly generated password could act in a more secure way than a generator. That's incorrect. Human beings are very bad at being random, and when we think we are being random, we aren't. You shouldn't be relying on yourself to come up with random passwords, passphrases, seeds, entropy, or anything else. Password managers such as KeePass, which will generate real random passwords for you, are open source, so no trust is needed.
|
|
|
|
pooya87
Legendary
Offline
Activity: 3640
Merit: 11033
Crypto Swap Exchange
|
|
December 11, 2019, 05:11:34 AM |
|
That's why if we use% *: with numbers when giving strong passwords, it will take a long time for them to hack their passwords. Not really. If someone is going to bruteforce your password, then they will likely already being using the full ASCII character set. There's a lot more to a truly secure password than just throwing in a percentage sign somewhere. i don't think we can generalize this because it will come down to how the password is actually created. for example if it is simply a couple of obvious words with one or two symbols thrown in there then it could be broken rather easily. but technically adding symbols to the mix is increasing the search space. if the password consists of only letters: - no case sensitivity -> each position is only 26 possibilities - with case sensitivity -> it goes up to 52 - with symbols -> it jumps to 90
|
|
|
|
o_e_l_e_o
In memoriam
Legendary
Offline
Activity: 2268
Merit: 18747
|
|
December 11, 2019, 11:32:27 AM |
|
I mean, you absolutely should be using the full character set allowed by whatever password or passphrase you are using, but my point was that your password isn't necessarily secure just because you are using the full character set. Many people who use numbers and symbols use them to change a single letter in an otherwise weak password (such as p4ssword or pa$$word), or just append them to the end.
If you want a strong password you need to use the full character set and have a program generate a long and random string for you.
|
|
|
|
hatshepsut93
Legendary
Offline
Activity: 3038
Merit: 2161
|
|
December 11, 2019, 12:32:23 PM |
|
I don't think password manager's could be trusted enough to generate a password for use, mostly when it has to be used for some thing very important or financial stuff.
Password managers are open source software used by millions of people. If you don't trust them, you might as well stop trusting all Bitcoin clients, all operating systems, all hardware, all algorithms. People who misunderstand security tend to weaken themselves by focusing on the wrong things and trying to reinvent the wheel, while lacking the theoretical knowledge to do so.
|
|
|
|
Legit_Alt+
Jr. Member
Offline
Activity: 603
Merit: 7
|
|
December 13, 2019, 04:28:13 PM |
|
To me I believe the best password to use is number and alphanumeric with this nobody can easily catch your password expect it was disclose by you and the habit of people send password through any internet miss is very bad. So let try and keep your password save like we do to our money because losing your password is equivalent to losing of your investment on fire blaze...
|
|
|
|
Cduff
Newbie
Offline
Activity: 33
Merit: 0
|
|
December 26, 2019, 09:14:49 PM |
|
Plus don’t use logical when you build your pwd
|
|
|
|
GreatArkansas (OP)
Legendary
Offline
Activity: 2506
Merit: 1394
|
|
January 26, 2020, 02:15:11 AM |
|
BUMP
|
|
|
|
Saint-loup
Legendary
Offline
Activity: 2800
Merit: 2428
|
|
January 29, 2020, 09:13:31 AM |
|
- Using Passphrase
Passphrase is consist of multiple words, the randomness of every word for creating a passphrase makes it strong. Example: "Dog in the dark" - Word make sense and it is grammatically ordered. "hulk touch adjourn omega" - Don't make sense phrase, not in grammatically order. You can use this password by capitalized every second character of every word, adding a special character between the words. Like hUlk&tOuch$aDjourn@oMega - You can use the Sentence Method here, for example, taking every first two characters of every word, capitalized every 2nd character of the word and adding random special characters. "hUlk tOuch aDjourn oMega". Result : hU#tO!aD*oM$
Be very careful about these complex methods, it's not as safe as you think, because : For decades, the advice from information security experts was to change your passwords frequently and use numbers, capitals, and special characters. But we humans are bad at creating randomness, and we’re bad at remembering things. So inevitably people used simple words, names, birthdates, and sayings, swapping out letters with similar-looking special characters. Hackers can crack these kinds of passwords in a matter of seconds.
In an effort to make secure systems, the prevailing password advice actually made the systems less secure. Or, as the user AviD now-famously put it on Stack Exchange, responding to the XKCD comic: “Security at the expense of usability comes at the expense of security.” In other words, if your “secure system” isn’t easy to use, people won’t use it, negating the security benefit. [...] When you use passphrases, also keep the following in mind:
Four words should be sufficient. Five words is better. Don’t choose from the most common words, and don’t choose quotes or sayings. The words should be as random as possible. Use a unique passphrase for every account you own. That way, if one passphrase is ever exposed, the other accounts remain secure. https://protonmail.com/blog/protonmail-com-blog-password-vs-passphrase/
|
|
|
|
CryptoYar
|
|
January 30, 2020, 06:46:44 AM |
|
When you want to generate a secure password on Android using Google Chrome1. Turn sync on in your Chrome 2. Go to a website and sign up for an account. 3. Tap on the password text box. 4. Tap Suggest strong password. If you don't see this option, tap Password Save your password and then Suggest strong password. You'll see a preview of the password. To confirm, tap Use password. Finish signing up for your account. Your password is automatically saved to Chrome. When you want to generate a secure password on iPhone & iPad1. Turn on sync in your Chrome. 2. Go to a website and sign up for an account. 3. Tap on the password text box. 4. Tap Suggest password. You'll see a preview of the password. To confirm, tap Use suggested password. Finish signing up for your account. And Your password is automatically saved to Chrome. Source: https://support.google.com/chrome/answer/7570435?co=GENIE.Platform%3DiOS&hl=en&oco=1#Turn sync on and off in Chrome: https://support.google.com/chrome/answer/185277
|
|
|
|
habibruis
Member
Offline
Activity: 328
Merit: 20
|
|
January 30, 2020, 07:23:18 AM |
|
Someone hacked my common password and stolen my all BTC about 0.5 BTC. Now I am using google's suggestion for creating a strong password. I do not save the password on my computer or mobile, Google saves it and provides me whenever I need. I also use 2FA to keep myself tension free. But all times I feel the pain for my losses for a weak password. After all, your suggestions also helpfull for all like me. Thank you.
|
|
|
|
|