Creating a secure password- NSA DOJ Microsoft

Vap0r

Prowler
Joined
May 22, 2005
Posts
1,469
Location
Cambodia, 3rd hut on the left
Society
cK
Avatar Name
Vap0r Vaps
Since there have been a rash of compromised passwords, I thought it might be a good idea to post some general guidelines or best practices if you will, on generating a unique and hard to guess password. This is your best offense against a hacker, second only to spending the $20 on a gold card:

1) Create a unique strong password just for EU- Creating a strong password is pointless if you use the same password for forums and tools, it must be UNIQUE!
Examples of stronger passwords (ripped from Wiki)
* t3wahSetyeT4, not a dictionary word, has both alpha and numeric characters
* 4pRte!ai@3, not a dictionary word, has both cases of alpha, plus numeric, and punctuation characters
* #3kLfN2x, same as preceeding
* MoOoOfIn245679, long, with both alpha cases and numeric characters

Examples of weak passwords (ripped frok Wiki):
* admin -- too easily guessed
* 1234 -- too easily guessed (Better change yours now Leafren)
* susan -- common personal name
* password -- trivially guessed, used astonishingly often
* p@ssw0rd -- simple letter substitutions are pre-programmed into cracking tools.
* rover -- common name for a pet, a dictionary word in any case
* 12/3/75 -- date, possibly of personal importance

2) Never share your password, Mindark will never ask for it! If you do happen to share it with a family member or coworker, change it as soon as possible.

3) Phrases are a good start but remember to use numbers and upper/lower case- example
Eu1MotFt1G = Entopia universe won(1) Me over the First time I(1) Globaled

4) Change your password often! Once a month, once a week- the more it changes, the harder it is to crack.

5) Report any attempts you catch, including emails or websites that ask for your EU login. File a support case ASAP with MA (don't kill me Marco/Frank)

6) Spend the $20 on a GOLD CARD

7) Now go enjoy EU :yay:


Some more information for the bored:

Wiki is always a good start:
http://en.wikipedia.org/wiki/Password_strength

Microsoft has a great list of do's and don'ts, how to create hard to crack/guess passwords. It really applies to not just Microsoft but any password that you use to protect sensitive information:
http://www.microsoft.com/athome/security/privacy/password.mspx

Link to how forensic information is used here in the states for investigations (Dept of Justice):
http://www.ncjrs.gov/pdffiles1/nij/210798.pdf

If your really crazy (geek) about securing your rigs running windows (AD), here are the NSA's thoughts (unclassified):
http://www.nsa.gov/
 
This page intentionally left blank!

Good guide btw :)
 
Vap0r said:
Eu1MotFt1G = Entopia universe won(1) Me over the First time I(1) Globaled

How did you find out ???
Fortunately you gave advice to create a new one :laugh:
Nice thread although redundant. People should apply more what they read instead of thinking, no harm yet so i still have time to change my dog's name password and buy a goldcard.
 
cool thx Vaps! This should be very informative for those that are thinking about making their passwords a little more complex... Hopefully in the next few weeks we can hear less and less about peoples accounts getting hacked into. +rep :bowdown:
 
Microsoft has a great list of do's and don'ts, how to create hard to crack/guess passwords. It really applies to not just Microsoft but any password that you use to protect sensitive information:
http://www.microsoft.com/athome/security/privacy/password.mspx

I understand what you are saying but to listen to anything from these guys is like listening to anything the government says. Remember, XP was suppose to be the last OS you will ever need.

+Rep for your well pointed out password help.
 
The microsoft stuff was mainly to point out the need for a strong unique password. XP is a far cry from being secure, even vista had undetectable root kits installed that could not even be seen- google blue pill exploit if you so desire :)
 
Back
Top