It's not 1999 anymore. Anyone with a video card can crack hashes fast enough to crack smaller passwords.
Besides, I did ya'll a favor. I could have required symbols, numbers, voiceprint identification, a scanned copy of your driver's license, and a full FBI background check.
It's not 1999 anymore. Anyone with a video card can crack hashes fast enough to crack smaller passwords.
Besides, I did ya'll a favor. I could have required symbols, numbers, voiceprint identification, a scanned copy of your driver's license, and a full FBI background check.
FBI, those are too small and without any important information. Go for NSA checks ;-) Signed up, but have to pay onsite. AGDQ HYPE
Well, I registered but unfortunately I'll have to look into payment a little later. I've been robbed through paypal in the past so I don't have one of those accounts any more. Gonna need to figure a different way out.
It's not 1999 anymore. Anyone with a video card can crack hashes fast enough to crack smaller passwords.
Besides, I did ya'll a favor. I could have required symbols, numbers, voiceprint identification, a scanned copy of your driver's license, and a full FBI background check.
Ah but are you storing the passwords with a salted hash.
Ah but are you storing the passwords with a salted hash.
I'm not Adobe.
Stored using a tested bcrypt hash (bcrypt has built in salting) with several rounds. One of the best hashing algorithms available, and probably better than most sites
I just cant think of a single site or school I have been to that had more than 8. My password of choice has symbols numbers and is case sensitive. I just have to add 2 more characters to it...
I just cant think of a single site or school I have been to that had more than 8. My password of choice has symbols numbers and is case sensitive. I just have to add 2 more characters to it...
You would be surprised how many sites just don't give a crap. I've seen banks that REQUIRE only a 6 digit numeric PIN instead of a password. Which is so trivially easy to crack that they could get into the entire bank's database of accounts in a matter of hours.
8 characters used to be sufficient about 5 years ago. 9 characters you can kinda get away with now, but as PCs improve (particularly GPUs), it's better to ensure some headroom. 10 character minimum ensures safety for the long term. Honestly it's still a compromise anyway. It's MUCH better to have a long phrase (like "derp bucket house ingrate") than it is to have: "!fD4#@aA9D". I guess you could say I'm trying to encourage people to use strong passwords in general without being a dick about it
I made an account. I got the verification email however its asking me to use an activation code to verify my email... but it never game me an activation code.
I made an account. I got the verification email however its asking me to use an activation code to verify my email... but it never game me an activation code.
edit: never mind it let me log in ><
The link you click in the email has the activation code in it. You probably activated it without realizing. (I confirmed your account is indeed active)