Again about weak and strong passwords: In post “Is your password strong enough“, I wrote about password policies and how to create strong passwords. It seems that majority of people use weak passwords. In recent article on his blog and essay that appeared on Wired.com, Bruce Schenier analyzed common usual passwords used by people. It was initiated by “MySpace password exploit“. It is amazing to see usual and simple passwords that are used very often. [Thanks to colleague Dejan Vesic for bringing this to my attention].
Polls
Loading ...Books
Blog Search
-
Recent Posts
Recent Comments
- Dragan on Security on Second Round Candidates of the Cryptographic Hash Algorithm Competition Selected
- Tweets that mention Poll: Do You Use Any Security Precautions On Your Mobile Phone? | Dragan on Security -- Topsy.com on Poll: Do You Use Any Security Precautions On Your Mobile Phone?
- Tweets that mention New Version of CrypTool | Dragan on Security -- Topsy.com on New Version of CrypTool
- Dragan on Security on CrypTool
- Tweets that mention What’s Wrong With Secure Software Development?Dragan on Security | Dragan on Security -- Topsy.com on What’s Wrong With Secure Software Development?
Featured
Categories
- Books, Magazines and Journals (28)
- Conferences, Events (25)
- Cryptography (41)
- Database Security (6)
- Education and Training (11)
- Fun (15)
- General (45)
- Hardware Security (9)
- Internet Security (42)
- Intrusion Detection / Prevention Systems (10)
- Malicious Software (23)
- Mobile / Cellular / Bluetooth (15)
- Operating Systems and Application Security (58)
- Penetration Testing (1)
- Secure Programming (13)
- Security (195)
- Compliance (1)
- Polls (17)
- Privacy (32)
- Review (3)
- Security Research (39)
- Software Security (13)
- Threats, Vulnerabilities, Attacks (19)
- Tools and Utilities (14)
- Uncategorized (1)
- VoIP Security (4)
- Wireless Security (19)
Archives
- January 2012 (1)
- October 2011 (3)
- September 2011 (1)
- February 2011 (1)
- January 2011 (1)
- September 2010 (1)
- August 2010 (2)
- July 2010 (1)
- June 2010 (4)
- May 2010 (2)
- April 2010 (1)
- January 2010 (1)
- December 2009 (2)
- October 2009 (1)
- September 2009 (1)
- July 2009 (2)
- June 2009 (2)
- May 2009 (1)
- April 2009 (3)
- March 2009 (1)
- January 2009 (5)
- December 2008 (2)
- November 2008 (1)
- October 2008 (4)
- July 2008 (3)
- May 2008 (4)
- April 2008 (3)
- March 2008 (9)
- February 2008 (4)
- January 2008 (7)
- December 2007 (8)
- November 2007 (9)
- October 2007 (18)
- September 2007 (12)
- August 2007 (17)
- July 2007 (5)
- June 2007 (16)
- May 2007 (21)
- April 2007 (12)
- March 2007 (4)
- February 2007 (12)
- January 2007 (17)
- December 2006 (23)
- November 2006 (62)
- October 2006 (23)
- September 2006 (7)
- May 2006 (2)
- March 2006 (2)
- February 2006 (1)
- January 2006 (6)
- December 2005 (3)
- November 2005 (14)
- October 2005 (26)
- September 2005 (14)
- August 2005 (10)



It’s not amazing at all as much as it can get funny. A friend of mine has been working for a short period as an network admin (administering Windows domain). I watched him day after day browsing some cracks and porn-sites and by scanning his roaming profile I’ve found somewhat like 600 pieces of spyware & adware. It’s funny for the same guy uses 6 small letter password (for which he claimes it’s secure !!!). I’ve managed to rip off by peeking over his shoulder. He typed it with one finger (!) cause he had a sandwitch in his other hand (I guess he didn’t want to grease his keyboard). The very same guy left the room full of people logged in with his admin account (without locking the system). One right-click-delete on a domain tree object would do some damege, I guess, as there was most probably NO backup of the domain database. Now that’s an admin (recessive genius). Should we discuss the regular users?