T
8

I used to run every password through a random generator then realized I was the weak link

Back in 2019 I was using a password manager with 20 character random strings for every account. Problem was I kept resetting passwords because I could never type them right on my phone or work computer. A security auditor I worked with in Chicago pointed out that 14 character passphrases with real words are actually harder to crack than random gibberish. Switched to diceware style phrases about 2 years ago and my reset rate dropped to zero. Has anyone else found that convenience and security don't have to fight each other?
1 comments

Log in to join the discussion

Log In
1 Comment
jennifer_fisher
harder to crack than random gibberish"? That seems super debatable honestly.
6