Go Back   Science Forums
View Single Post
Old 03-12-2009   #16 (permalink)
alexander's Avatar
alexander
Dedicated Smart-ass




Location:
Just before 0xAA55
 
alexander has a reputation beyond reputealexander has a reputation beyond reputealexander has a reputation beyond reputealexander has a reputation beyond reputealexander has a reputation beyond reputealexander has a reputation beyond reputealexander has a reputation beyond reputealexander has a reputation beyond reputealexander has a reputation beyond reputealexander has a reputation beyond repute
Send a message via AIM to alexander
 



Not Ranked  0 score     
Re: Password Length And Complexity

space is actually a better random character then an exclamation mark...

Donk, in my current life i deal with key loggers, both software and hardware, thing is, if someone installed a key logger on your computer to "get your passwords" you are already screwed... they both got in and installed it so your security was compromized already, at that point you dont even have to run a key logger to get your passwords, because there are many ways to get the data, regardless of whether you typed it or pasted it (its as easy to log the copy actions as it is to log key presses).

Now hardware loggers are a little different, in that if you copy and paste your passwords they will not catch those passwords, but you cant copy and paste your login password, thus you are still (as they say in leet speak) pwned, as software loggers can be installed afterwards with your login password.

Biometric authentication is still bad, as its easy to lift a finger print, and use it to get in (most of those devices are easy to fool).

Centrally managed changing keys are probably one of the only, still not fool proof, ways to manage security. But honestly you can be paranoid as you can be with password security in your organization, bottom line is that there is still a "Human Factor" in the equation, which means that exploiting that factor is most of the time, the easiest route to take to gain access. I've talked to many guys who do penetration testing, and i just have to say, you'd be surprised how far a fake badge and a printed design on a shirt, or a cell phone that rings at just the right time, or a telephone butt set set can take you, or a dozen cheap flash drives, or carefully labeled cds can take you... and ofcourse nothing beats the phone call from your new IT guy


----------------
Microsoft, the leader in using innovative tactics to promote irksome experience, coupled with antiquated technology that's held together by a pyramid of makeshift afterthoughts.

Apple, the leader in using irksome tactics to promote innovative experience, coupled with an antiquated core that's enhanced by state-of-the-art afterthoughts.

Linux, the leader in not using any tactics to promote user-defined experience, coupled with state-of-the-art core enhanced by innovative afterthoughts.


Last edited by alexander; 03-12-2009 at 09:13 AM..
Reply With Quote
 
» Advertisement
» Current Poll
Who's the sexiest man alive? Johnny Depp or Robert Pattinson?
Johnny Depp - 27.27%
3 Votes
Robert Pattinson - 0%
0 Votes
Someone else (please specify) - 45.45%
5 Votes
I'm too macho to think a guy is sexy - 27.27%
3 Votes
Total Votes: 11
You may not vote on this poll.


All times are GMT -8. The time now is 03:41 PM.

Hypography?

Hypography [n.]: A combination of "hyperlink" and "bibliography" - ie, a list of links to electronic documents. Comparable to discography and bibliography, but not cartography.

We have been online since May 2000, and aim to be the best place to find and share science-related content of all kinds.

Share the love!

Please add more science to your life. Use our RSS feeds on your blog, your portal, or your favorite feedreader!


Powered by vBulletin® Version 3.8.3
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Copyright © 2000-2009 Hypography
Part of the Hypography - Science for Everyone Network