Best way to make an uncrackable passphrase, using What3words

12357

Comments

  • dogmaryxx
    dogmaryxx Posts: 2,446 Forumite
    Part of the Furniture 1,000 Posts Name Dropper
    edited 20 September 2023 at 8:41PM
    Checked my easy to remember password as you suggested.
     Result 
    Time to crack your password:

    32 trillion years

    Review: Fantastic, using that password makes you as secure as Fort Knox.

     :Will stick with it as I'll be long gone by then.:
  • John_Gray
    John_Gray Posts: 5,837 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Photogenic
    How long would it take to crack your password?
    I cracked it immediately simply by looking at your post, where you have written it down...
  • I usually look around at letters, leaflets etc etc and pick three random words translate a couple of words to a foreign language in Google translate, say Thai and then use the pronunciation words add a couple of numbers and special characters
  • victor2
    victor2 Posts: 8,067 Ambassador
    Part of the Furniture 1,000 Posts Name Dropper
    SteveJW said:
    I usually look around at letters, leaflets etc etc and pick three random words translate a couple of words to a foreign language in Google translate, say Thai and then use the pronunciation words add a couple of numbers and special characters
    Why not just let a password manager generate passwords for you?

    I’m a Forum Ambassador and I support the Forum Team on the In My Home MoneySaving, Energy and Techie Stuff boards. If you need any help on these boards, do let me know. Please note that Ambassadors are not moderators. Any posts you spot in breach of the Forum Rules should be reported via the report button, or by emailing forumteam@moneysavingexpert.com. 

    All views are my own and not the official line of MoneySavingExpert.

  • I'm always a bit sceptical about password security.

    Most of the fraud I read about involves either scammers phoning you up and persuading you to move your own money, or it's card fraud where somebody has copied or cloned your credit/debit card and/or somehow got your card details by other means.

    Neither of these involve breaking any passwords AFAIK

    Is there any information available about how many people lose money due to their password being compromised versus those other methods I've listed above?
  • PHK
    PHK Posts: 2,210 Forumite
    Eighth Anniversary 1,000 Posts Photogenic Name Dropper
    You are confusing fraud with security.

    Someone who has your password(s) can take over part or all of your digital identity. 

    From the trivial things such as using your Netflix account, through more serious things like buying things on your Amazon account to setting up accounts in your name to do illegal things that end up with the police knocking at your door.

    More prosaically, do you want your information sold on the dark web? Strangers reading your emails? Contacting all your contacts with phishing that looks like it's coming from you?

    That's just some of the things that can happen with weak password security.
  • Why not just let a password manager generate passwords for you?
    Some websites will not let me copy and paste passwords

    I like many people struggle to remember a string of random numbers, letters and characters
    I can remember three words even if in a foreign language or phonetic, combined with a year and a couple of special characters

  • IvanOpinion
    IvanOpinion Posts: 22,554 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Combo Breaker
    victor2 said:
    SteveJW said:
    I usually look around at letters, leaflets etc etc and pick three random words translate a couple of words to a foreign language in Google translate, say Thai and then use the pronunciation words add a couple of numbers and special characters
    Why not just let a password manager generate passwords for you?
    While I use one, I no longer include high security passwords in it (e.g. bank account, trading accounts etc.) - I have become more wary since a couple of recent high profile hacks, and discussions with real security experts.

    There is an argument that if someone uses a password manager then you only need to hack a single password to gain access to all passwords. On the other hand there are much simpler ways to gain access.
    Past caring about first world problems.
  • victor2 said:
    SteveJW said:
    I usually look around at letters, leaflets etc etc and pick three random words translate a couple of words to a foreign language in Google translate, say Thai and then use the pronunciation words add a couple of numbers and special characters
    Why not just let a password manager generate passwords for you?
    While I use one, I no longer include high security passwords in it (e.g. bank account, trading accounts etc.) - I have become more wary since a couple of recent high profile hacks, and discussions with real security experts.

    There is an argument that if someone uses a password manager then you only need to hack a single password to gain access to all passwords. On the other hand there are much simpler ways to gain access.

    If you're that weary, surely you could download a password generator from somewhere and generate your passwords offline?
    I use online passwords to generate my Wi-Fi keys of 30+ characters.  I must admit this can make entering the key for the first time interesting.
  • victor2 said:
    SteveJW said:
    I usually look around at letters, leaflets etc etc and pick three random words translate a couple of words to a foreign language in Google translate, say Thai and then use the pronunciation words add a couple of numbers and special characters
    Why not just let a password manager generate passwords for you?
    While I use one, I no longer include high security passwords in it (e.g. bank account, trading accounts etc.) - I have become more wary since a couple of recent high profile hacks, and discussions with real security experts.

    There is an argument that if someone uses a password manager then you only need to hack a single password to gain access to all passwords. On the other hand there are much simpler ways to gain access.
    Use an offline password manager that runs on your computer instead of a cloud based one. Keepass for example.

Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.1K Banking & Borrowing
  • 252.8K Reduce Debt & Boost Income
  • 453.1K Spending & Discounts
  • 243.1K Work, Benefits & Business
  • 597.5K Mortgages, Homes & Bills
  • 176.5K Life & Family
  • 256.1K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.