Close Menu
Ztoog
    What's Hot
    Technology

    Elon Musk, Video Game King? Well, Maybe Not.

    Gadgets

    Renewable Energy Overtakes Coal In US Power Generation

    Mobile

    Your phone’s stock gallery app just got a fantastic Google Photos upgrade

    Important Pages:
    • About Us
    • Contact us
    • Privacy Policy
    • Terms & Conditions
    Facebook X (Twitter) Instagram Pinterest
    Facebook X (Twitter) Instagram Pinterest
    Ztoog
    • Home
    • The Future

      Today’s NYT Connections Hints, Answers for May 12, #701

      OPPO launches A5 Pro 5G: Premium features at a budget price

      How I Turn Unstructured PDFs into Revenue-Ready Spreadsheets

      Is it the best tool for 2025?

      The clocks that helped define time from London’s Royal Observatory

    • Technology

      Today’s NYT Wordle Hints, Answer and Help for May 12, #1423

      What It Is and Why It Matters—Part 1 – O’Reilly

      Ensure Hard Work Is Recognized With These 3 Steps

      Cicada map 2025: Where will Brood XIV cicadas emerge this spring?

      Is Duolingo the face of an AI jobs crisis?

    • Gadgets

      Google Tests Automatic Password-to-Passkey Conversion On Android

      Maono Caster G1 Neo & PD200X Review: Budget Streaming Gear for Aspiring Creators

      Apple plans to split iPhone 18 launch into two phases in 2026

      Upgrade your desk to Starfleet status with this $95 USB-C hub

      37 Best Graduation Gift Ideas (2025): For College Grads

    • Mobile

      Motorola’s Moto Watch needs to start living up to the brand name

      Samsung Galaxy S25 Edge promo materials leak

      What are people doing with those free T-Mobile lines? Way more than you’d expect

      Samsung doesn’t want budget Galaxy phones to use exclusive AI features

      COROS’s charging adapter is a neat solution to the smartwatch charging cable problem

    • Science

      Nothing is stronger than quantum connections – and now we know why

      Failed Soviet probe will soon crash to Earth – and we don’t know where

      Trump administration cuts off all future federal funding to Harvard

      Does kissing spread gluten? New research offers a clue.

      Why Balcony Solar Panels Haven’t Taken Off in the US

    • AI

      Hybrid AI model crafts smooth, high-quality videos in seconds | Ztoog

      How to build a better AI benchmark

      Q&A: A roadmap for revolutionizing health care through data-driven innovation | Ztoog

      This data set helps researchers spot harmful stereotypes in LLMs

      Making AI models more trustworthy for high-stakes settings | Ztoog

    • Crypto

      Ethereum Breaks Key Resistance In One Massive Move – Higher High Confirms Momentum

      ‘The Big Short’ Coming For Bitcoin? Why BTC Will Clear $110,000

      Bitcoin Holds Above $95K Despite Weak Blockchain Activity — Analytics Firm Explains Why

      eToro eyes US IPO launch as early as next week amid easing concerns over Trump’s tariffs

      Cardano ‘Looks Dope,’ Analyst Predicts Big Move Soon

    Ztoog
    Home » Passwords and their Discontents – O’Reilly
    Technology

    Passwords and their Discontents – O’Reilly

    Facebook Twitter Pinterest WhatsApp
    Passwords and their Discontents – O’Reilly
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp

    This article initially appeared in Business Age.

    In commentary equipped to Business Age, I shot my mouth off saying that passwords are a poor resolution for authenticating customers–however not one of the options are superb, both. The selections obtainable to us are at greatest poor.  So now I’m the sufferer of a follow-up query 🙂 What do I take advantage of?



    Learn quicker. Dig deeper. See farther.

    Unfortunately, “what do I use” isn’t actually a selection I get to make–as a rule, you’re caught with the alternatives of the individuals who constructed the websites you utilize. So the perfect you are able to do is be sure you have a great password. An excellent password is a protracted string of random letters, numbers, and punctuation marks. There are a number of methods of producing these. The easiest one is to let Google Chrome generate a password for you. (Firefox may generate safe passwords.)  While Google is broadly mistrusted, I believe that distrust is misplaced.  Google hasn’t been the sufferer of serious safety breaches (not like some well-known password managers), and they actually have little interest in promoting my passwords to different events. Yes, zero-day exploits and frequent safety updates to Chrome signifies that there are vulnerabilities–however it additionally signifies that vulnerabilities are detected and patched. We ought to all be way more involved about software program that isn’t up to date often. 

    Creating your personal good password is barely barely tougher than letting your browser do it for you–and, frankly, simpler than creating a nasty password (although not simpler to recollect). I open a textual content window and kind randomly on my keyboard for a number of seconds, yielding one thing like this: oe8h;org’pr/sajidj. (That’s 18 characters, generated in a few seconds.) I copy it and paste it into an utility that wants a password. If it asks for punctuation, a digit, or a capital letter, I’m going again to the textual content window, add one thing that appears random, then copy and paste once more. The copy/paste course of permits you to fill within the “retype new password” discipline with out error. (If pasting isn’t allowed, I query whether or not I wish to use that service.) Again, I let my browser save the password. It will synchronize throughout all my gadgets, which signifies that I don’t want to take care of a listing of passwords.

    And what about two-factor authentication (2FA)?  Yes, positively–use it wherever potential.  A textual content to my cellphone isn’t superb, however it’s sufficient, and preferable to sending a code to e mail.  There are methods to assault an SMS to your telephone, however it’s not straightforward. But watch out–I as soon as had an app that may let me textual content from my laptop computer. If anybody texted me, it could show the textual content in a popup window on the laptop computer, which defeats the aim of 2FA. In common, you wish to obtain the safety code on a special system from the one you’re utilizing to login. That’s an issue when you’re utilizing a telephone; I don’t have a great resolution.

    Password rotation? I resist that, though an authentication supplier that I’ve to make use of requires it. The safety neighborhood has lengthy recognized that forcing customers to alter passwords regularly is a nasty observe. It encourages customers to decide on simply remembered passwords, and that’s the alternative of what we wish. Think about it: if a random password hasn’t been brute-forced previously 3 months, why do we predict it’s extra more likely to be brute-forced within the subsequent 3 months?  I get it–corporations must take care of insurers, and maybe forcing customers who’re by no means going to provide you with good passwords to alter passwords frequently is a win. I don’t wish to take into consideration these statistics. But one good password is infinitely higher than a nasty password that’s modified frequently.

    So–that’s what I do. It’s not elegant, and please don’t declare that it represents any “best practices.”  But that’s not likely the purpose. What I select to do is irrelevant, as a result of I’m on the mercy of the individuals who create the websites I take advantage of. And their practices could be shockingly dangerous. Here’s an actual instance. I pay an aged relative’s medical payments. Let that sink in:  we’re speaking one of the crucial privacy-conscious and closely regulated industries on the planet. Recently, I received a authentic request to pay a invoice, with a hyperlink to a website the place I can view it and pay. The e mail tells me that the account quantity, person title, and password are ALL THE SAME. And the account quantity is contained within the e mail. (And simply guessable.) That’s past horrendous. 

    It’s unlucky that there aren’t extra good options on the market, and that options like bodily safety keys aren’t extra broadly used. There was hope that passkeys would make passwords go away, however that hope is fading. Biometrics? If my Pixel telephone would do a greater job of figuring out my fingerprint or recognizing my face after I take my glasses off, we may speak about that various. However, wishing that we had a greater resolution received’t clear up the issue. Random passwords (no matter the way you generate them) and two-factor authentication are the perfect options now we have now.

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp

    Related Posts

    Technology

    Today’s NYT Wordle Hints, Answer and Help for May 12, #1423

    Technology

    What It Is and Why It Matters—Part 1 – O’Reilly

    Technology

    Ensure Hard Work Is Recognized With These 3 Steps

    Technology

    Cicada map 2025: Where will Brood XIV cicadas emerge this spring?

    Technology

    Is Duolingo the face of an AI jobs crisis?

    Technology

    The US DOD transfers its AI-based Open Price Exploration for National Security program to nonprofit Critical Minerals Forum to boost Western supply deals (Ernest Scheyder/Reuters)

    Technology

    The more Google kills Fitbit, the more I want a Fitbit Sense 3

    Technology

    Sorry Shoppers, Amazon Says Tariff Cost Feature ‘Is Not Going to Happen’

    Leave A Reply Cancel Reply

    Follow Us
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    Top Posts
    AI

    The data practitioner for the AI era

    Data practitioners are amongst these whose roles are experiencing the most important change, as organizations…

    Crypto

    SettleMint’s AI assistant aims to help web3 developers write better smart contracts

    The method synthetic intelligence can write software program has already prompted many firms to introduce…

    Technology

    Google researchers report critical zero-days in Chrome and all Apple OSes

    Researchers in Google’s Threat Analysis Group have been as busy as ever, with discoveries which…

    The Future

    Trump defends TikTok against ‘enemy’ Meta

    As stress mounts on TikTok following current congressional laws, former President Donald Trump has gone…

    Gadgets

    Neuralink’s First Recipient Successfully Controls Computer Mouse With Thoughts

    Elon Musk’s Neuralink has achieved a big milestone as the primary recipient of the mind…

    Our Picks
    Science

    Six of the most amazing space pictures from 2023

    Crypto

    Bridging the Gap Between Solana and Ethereum: Neon EVM Debuts on Solana Mainnet

    AI

    Decoding the Impact of Feedback Protocols on Large Language Model Alignment: Insights from Ratings vs. Rankings

    Categories
    • AI (1,483)
    • Crypto (1,745)
    • Gadgets (1,797)
    • Mobile (1,840)
    • Science (1,854)
    • Technology (1,791)
    • The Future (1,637)
    Most Popular
    Technology

    Developing the Next Generation of AI Assistant

    Crypto

    Supply On Exchanges Continues To Hit New All-Time Lows

    Science

    Can You Strike Out a Major League Baseball Player by Pitching Super Slow?

    Ztoog
    Facebook X (Twitter) Instagram Pinterest
    • Home
    • About Us
    • Contact us
    • Privacy Policy
    • Terms & Conditions
    © 2025 Ztoog.

    Type above and press Enter to search. Press Esc to cancel.