We'd like to remind Forumites to please avoid political debate on the Forum... Read More »
We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
Passwords security
Options
Comments
-
RG2015 said:jbrassy said:I would recommend using a password manager like Lastpass or One Password. Then you can create randomised passwords which are 16+ characters long which you don't need to remember. Just as important is to use 2 factor authentication.
0 -
It also means that the coop will likely no longer store your password in plain text. That should give you some comfort in case thier systems are hacked.I’m a Forum Ambassador and I support the Forum Team on the Credit Cards, Savings & investments, and Budgeting & Bank Accounts boards. If you need any help on these boards, do let me know. Please note that Ambassadors are not moderators. Any posts you spot in breach of the Forum Rules should be reported via the report button, or by emailing forumteam@moneysavingexpert.com.
All views are my own and not the official line of MoneySavingExpert.0 -
uk1 said:Ebe_Scrooge said:A good trick for making passwords easy for you to remember but impossible (for a human) to guess is to use a phrase (apologies if I'm teaching granny to suck eggs, but it might be helpful for some folk). Pick a phrase that means something to you, for example "My dog is called Arthur and he wakes me up at 6am every morning with his barking!" Take the first letter from each word, giving you a password of "MdicAahwmua6amemwhb!".Not directly related to the original question I realise - but it's a handy little tip.
This means that I have a very memorable but unique password but it is different and unique for every different account. So in the event that one account is compromised it wouldn’t mean all are.
So for example if it were Chase and my favourite record is You heard it through the Grapevine” my password might be “Uh1tTgchasejohn!”
One compromised /leaked password makes guessing all others very easy.
Even worse if your favourite song is very common or known by anyone who knows you (e.g on your social media profile).
ETA: for completeness, this method is slightly better than reusing the same password, e.g against automated attacks.
But for something more targeted, e.g. identity theft, where some human effort is included, one compromised account could open up one/all.0 -
k_man said:Deleted_User said:... but you can take something like Sausagedog22!? (16 years to crack) and make it way harder just by putting something on the front unique for each site e.g. MSSausagedog22!? (14 thousand years!) for MSE or HOSausagedog22!? for Hotmail etc - not wonderful to use the same password format but if no-one knows it or the coding convention then it's better than the minimum
E.g. if MSE have a security breach involving these credentials a hacker can now guess the password for most other sites
The idea is to make it so passwords are complex but the system isn't so much work people will just give up and use their dog's name and birth year on everything0 -
For a brute force dictionary attack this is equivalent to a 13 length password
my name is far fetch and i post on money saving expert website
The 19 character password elephantrhinocerous is equivalent to a length 2 password for brute force attacks ie you might just as well use the password '12'0 -
SiliconChip said:RG2015 said:jbrassy said:I would recommend using a password manager like Lastpass or One Password. Then you can create randomised passwords which are 16+ characters long which you don't need to remember. Just as important is to use 2 factor authentication.
How does a keylogger gain access to your computer and how would you know if they had?
Is a bank requiring 3 random characters more secure than one asking for the full password?0 -
Deleted_User said:You could test your password strength online easily enough but a longer one, rather than special characters, is actually far better - I had an old wifi password which was over 50 characters (might even have been over 100) as it was a long sentence. The new router refused to accept it as it didn't have upper case letters and numbers despite the acceptable password being only 12 characters or something silly.
Password123!?
Would take 0.23 seconds to crack
Yet
mynameisfarfetchandipostonmoneysavingexpertwebsite
would take 1 thousand trillion years despite no numbers, capitals or special characters
0 -
RG2015 said:SiliconChip said:RG2015 said:jbrassy said:I would recommend using a password manager like Lastpass or One Password. Then you can create randomised passwords which are 16+ characters long which you don't need to remember. Just as important is to use 2 factor authentication.
How does a keylogger gain access to your computer and how would you know if they had?
Is a bank requiring 3 random characters more secure than one asking for the full password?
Security software will help.
Your comp will also tend to run slower because the keylogger is running in the background.
There are many answers to your question.
Be suspicious plus common sense is the best defense, as for scams.
1 -
Often a bank will ask you to input something like a password or a memorable data using drop down boxes rather than a keyboard as a keylogger would be unable to log the drop down boxes3
-
km1500 said:Often a bank will ask you to input something like a password or a memorable data using drop down boxes rather than a keyboard as a keylogger would be unable to log the drop down boxes
In a similar vein, does this mean keylogging would not work on a tablet screen keyboard?0
Confirm your email address to Create Threads and Reply

Categories
- All Categories
- 350.8K Banking & Borrowing
- 253.1K Reduce Debt & Boost Income
- 453.5K Spending & Discounts
- 243.8K Work, Benefits & Business
- 598.7K Mortgages, Homes & Bills
- 176.8K Life & Family
- 257.1K Travel & Transport
- 1.5M Hobbies & Leisure
- 16.1K Discuss & Feedback
- 37.6K Read-Only Boards