Skip to main content

Search

Items tagged with: password


Are Your #Passwords in the Green?


source: https://www.hivesystems.com/blog/are-your-passwords-in-the-green

#password #login #internet #gpu #bruteforce #crack #hack #security #cybersecurity #technology #speed


So, Cloudflare analyzed passwords people are using to log in to sites they protect and discovered lots of re-use.

Let me put the important words in uppercase.

So, CLOUDFLARE ANALYZED PASSWORDS PEOPLE ARE USING to LOG IN to sites THEY PROTECT and DISCOVERED lots of re-use.

[Edit with H/T: https://benjojo.co.uk/u/benjojo/h/cR4dJWj3KZltPv3rqX]

https://blog.cloudflare.com/password-reuse-rampant-half-user-logins-compromised/

#cloudflare #password #cybersecurity


In today's episode of 'website security theatre' we present the US Government's "TreasuryDirect" site.

They don't just disable copy-and-paste into the password field, they disable *keyboard entry* into the password field. You are required to click buttons on this virtual keyboard in order to enter your password. Kudos to them for making high-entropy random passwords difficult to use!

Oh, and the password is also case-insensitive, probably because implementing shift-key support in the virtual keyboard would have been too complex.

#Password #SecurityTheatre
screen capture of web form with a disabled 'password' field and a large virtual keyboard.



With almost 6k instances of #mastodon I'm pretty sure some #scam is already free in the wild. Choose your instance wisely, be aware of the e-mail account you use and - as always - use a unique password.
#infosec #newtoots #password


Hallo !Friendica Support
wenn ich meine E-Mail Adresse für meinen Account ändern möchte - kann ich diese zwar eintragen, aber ich erhalte dann die Meldung "Falsches Passwort" ohne das ich eine Aufforderung zur eingabe eines Passwortes erhalten habe.

Ist die ein Bug oder habe ich da etwas übersehen?

#change #email #password #bug


If you mean "online" #password storage then yeah, #bitwarden. My family uses #passwdsafe + #syncthing (also offline) though.

By the way #nextcloud seem to have a new pwstore but haven't checked its security yet.