Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Whether they need to be memorized or not does not make the statement "it will be leaked eventually anyway" more true.

I use a password database so I don't memorize most of my passwords.



Well, it does, because memory puts some limitations on length and complexity...


It is possible to memorize a 100 bit password. I once had a 1000 word poem memorized, and could write it down flawlessly from memory.

I agree that it's not worth memorizing, you should instead use a password database. But I still maintain my original point that there's no reason to assume that your password will be leaked eventually if you use a strong password.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: