Avatar
Please consider registering
guest
sp_LogInOut Log Insp_Registration Register
Register | Lost password?
Advanced Search
Forum Scope


Match



Forum Options



Minimum search word length is 3 characters - maximum search word length is 84 characters
sp_Feed Topic RSSsp_topic_old
Security, or is it no-security
Avatar
Thinowns
Member
Members
March 14, 2013 - 2:40 pm
Member Since: March 9, 2013
Forum Posts: 11
sp_UserOfflineSmall Offline

've noted that many web-based services are claiming to increase their security. 

Generally speaking for the user this appears as a longer password with some form of complexity (numbers, uppercase, specials).

I just want to raise 3 points here :

- use of uppercase/lowercase is a killer for aged people that typically type in whatever case is active. So asking them to SHIFT-key is quite blind-sided.

- the idea that more complex is better is a red-herring. Go to any office space and look for post-its, anything long and crazy-looking ... is a password. So we are moving responsibility from web service to individual, but we are not giving the individual the means to keep it secure.

- security 101. think of those web sites that insist on registration. Here I typically register with a password like qwerty12345 and rely on the forgotten password button. You'd be surprised how many sites (some actually claiming to provide secure cloud disk storage) will send me my password in clear by email (rather than the better password-reset link).

All this to say that this is not security. 

I can understand security but it should bridge what technology can do with what users are willing to bear (and understand). But systematically pushing the onus on users is equivalent to leaving an open door.

Avatar
Claw
Member
Members
March 23, 2013 - 10:32 pm
Member Since: July 11, 2012
Forum Posts: 90
sp_UserOfflineSmall Offline

Hey Thinowns, I've used that "forgot password" button often. Why don't you try passwords of your favorite things, like, for example,, Fishing-1 or Cycling-2. You know know, just something simple to you but unknown to strangers on the net. Just a suggestion buddy. Take care.

Avatar
Alan Wade
Sweden
Member
Members
March 24, 2013 - 5:16 am
Member Since: January 18, 2013
Forum Posts: 43
sp_UserOfflineSmall Offline

Install LastPass that way you only need to remember the password to your vault. It also generates passwords so you dont even have to do that and you can set it to auto-fill/login to any site you wish.

Forum Timezone: America/Indiana/Indianapolis
Most Users Ever Online: 2303
Currently Online: MeheakKunar
Guest(s) 137
Currently Browsing this Page:
1 Guest(s)
Top Posters:
Chad Johnson: 867
Mindblower: 681
carbonterry2: 356
Flying Dutchman: 278
grr: 211
Member Stats:
Guest Posters: 11
Members: 3231
Moderators: 7
Admins: 3
Forum Stats:
Groups: 8
Forums: 20
Topics: 1956
Posts: 13572
Newest Members:
Toastmaster, smartwindows, instaproapk, mousetesteronline, keshamatt
Moderators: Carol Bratt: 67, dandl: 740, Jason Shuffield: 1, Jim Canfield: 8, Terry Hollett: 0, Stuart Berg: 0, John Durso: 0
Administrators: Jim Hillier: 2709, Richard Pedersen: 212, David Hartsock: 1117
Scroll to Top

WHY NOT SUBSCRIBE TO OUR NEWSLETTER?

Get great content like this delivered to your inbox!

It's free, convenient, and delivered right to your inbox! We do not spam and we will not share your address. Period!