Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Sometimes I use passages from books. Easy to remember a >60 char password, can always check the book and it brings back to memory a book that I enjoyed each time I use it. For PINs I like to use a long sequence of digits of a physical/mathematical constant.


From books? Having anything that's natural language will kill your entropy, way way below correct horse battery staple. Moreso if it's indexed by Google Ngrams.


Yes. But it’s much more dramatic in the movie when the villain runs his finger along the spines of the books in your library idly but then his eyes narrow and he aggressively pulls a book off the shelf and flips it open to a well worn spot. Checkmate!


Theoretically, maybe. But I'm tempted to believe that for all practical purposes it's a 60+ chars password.


Don't. It isn't.


Just FYI, if there is an incentive to get your password, there are existing programs to match arbitrary length strings from books or any text source. One such program has been used to steal cryptocurrency from wallets that are generated from a passphrase like NXT.


That's why I also add punctuation to the phrases :), or some suffix.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: