<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: University of Cambridge conducts largest-ever password study</title>
	<atom:link href="http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/</link>
	<description>Feeding Your Gadget and Tech Obsessions</description>
	<lastBuildDate>Wed, 19 Jun 2013 10:16:00 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
	<item>
		<title>By: technopeasant</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214788</link>
		<dc:creator>technopeasant</dc:creator>
		<pubDate>Mon, 04 Jun 2012 20:10:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214788</guid>
		<description><![CDATA[We arent living in some drafty old castle like in medieval times.
The very concept of a &quot;pass&quot; word is archaic and should be relegated to the dustbin of history. 
Given that the QWERTY keyboard isnt going to be replaced with a brain tap anytime soon I&#039;ve been using a SWYPE style pattern of random keystrokes instead of a &quot;rational&quot; word construct. 
 ]]></description>
		<content:encoded><![CDATA[<p>We arent living in some drafty old castle like in medieval times.<br />
The very concept of a &#8220;pass&#8221; word is archaic and should be relegated to the dustbin of history.<br />
Given that the QWERTY keyboard isnt going to be replaced with a brain tap anytime soon I&#8217;ve been using a SWYPE style pattern of random keystrokes instead of a &#8220;rational&#8221; word construct. </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: simpleas</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214543</link>
		<dc:creator>simpleas</dc:creator>
		<pubDate>Sat, 02 Jun 2012 17:39:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214543</guid>
		<description><![CDATA[my password is something similar (in terms of randomness) to 
uywimha8  , hope thats not too easy to crack as it doesn&#039;t mean anything.]]></description>
		<content:encoded><![CDATA[<p>my password is something similar (in terms of randomness) to<br />
uywimha8  , hope thats not too easy to crack as it doesn&#8217;t mean anything.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Arnold D.</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214530</link>
		<dc:creator>Arnold D.</dc:creator>
		<pubDate>Sat, 02 Jun 2012 12:45:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214530</guid>
		<description><![CDATA[Most people pick terrible passwords, therefore all people pick terrible passwords? I find your lack of logic disturbing.]]></description>
		<content:encoded><![CDATA[<p>Most people pick terrible passwords, therefore all people pick terrible passwords? I find your lack of logic disturbing.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: truthsmiles</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214517</link>
		<dc:creator>truthsmiles</dc:creator>
		<pubDate>Sat, 02 Jun 2012 07:48:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214517</guid>
		<description><![CDATA[This is due almost entirely to password longevity rules. Institutions who think that passwords should be changed every X days are asking for a breach. Humans can&#039;t keep track of them and have to write them down. It sounds like a good idea but in practice your observations are completely expected. ]]></description>
		<content:encoded><![CDATA[<p>This is due almost entirely to password longevity rules. Institutions who think that passwords should be changed every X days are asking for a breach. Humans can&#8217;t keep track of them and have to write them down. It sounds like a good idea but in practice your observations are completely expected. </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: hthalljr</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214513</link>
		<dc:creator>hthalljr</dc:creator>
		<pubDate>Sat, 02 Jun 2012 06:38:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214513</guid>
		<description><![CDATA[Those are excellent suggestions. The thing that will make it strongest is the length of the phrase. Try to make it at least 10 charachters. Here&#039;s a good example of a strong pass phrase. Note that I capitalize the first word and any nouns. &quot;I was born in 1950 and so was my wife!
Iwbi1950&amp;swmW!]]></description>
		<content:encoded><![CDATA[<p>Those are excellent suggestions. The thing that will make it strongest is the length of the phrase. Try to make it at least 10 charachters. Here&#8217;s a good example of a strong pass phrase. Note that I capitalize the first word and any nouns. &#8220;I was born in 1950 and so was my wife!<br />
Iwbi1950&amp;swmW!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Tony R.</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214512</link>
		<dc:creator>Tony R.</dc:creator>
		<pubDate>Sat, 02 Jun 2012 06:35:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214512</guid>
		<description><![CDATA[True.  I&#039;ve on occasion contacted site administrators to get the password rules and more often than not found that passwords are limited to six or eight characters, and sometimes even prohibit certain punctuation characters.]]></description>
		<content:encoded><![CDATA[<p>True.  I&#8217;ve on occasion contacted site administrators to get the password rules and more often than not found that passwords are limited to six or eight characters, and sometimes even prohibit certain punctuation characters.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: b_k_c</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214509</link>
		<dc:creator>b_k_c</dc:creator>
		<pubDate>Sat, 02 Jun 2012 05:42:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214509</guid>
		<description><![CDATA[I find it humorus that at work, we have all these password rules and make people change passwords all the time. Then when you go around to their desks, you find password written down on sticky notes, inside the top desk drawers and all over the place. LOL! Why have passwords then? ]]></description>
		<content:encoded><![CDATA[<p>I find it humorus that at work, we have all these password rules and make people change passwords all the time. Then when you go around to their desks, you find password written down on sticky notes, inside the top desk drawers and all over the place. LOL! Why have passwords then? </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nick S</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214508</link>
		<dc:creator>Nick S</dc:creator>
		<pubDate>Sat, 02 Jun 2012 05:22:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214508</guid>
		<description><![CDATA[Yes, but as n becomes very large, the statistics will more closely match reality.  Also, the author did not commit an ecological fallacy by suggesting your password was weak - he said &quot;probably&quot; ;)

Otherwise, it would be interesting to find a way to look at plain text passwords in this volume, if only to see how many people used &quot;p@s$W0rd&quot;.]]></description>
		<content:encoded><![CDATA[<p>Yes, but as n becomes very large, the statistics will more closely match reality.  Also, the author did not commit an ecological fallacy by suggesting your password was weak &#8211; he said &#8220;probably&#8221; ;)</p>
<p>Otherwise, it would be interesting to find a way to look at plain text passwords in this volume, if only to see how many people used &#8220;p@s$W0rd&#8221;.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Some dude</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214507</link>
		<dc:creator>Some dude</dc:creator>
		<pubDate>Sat, 02 Jun 2012 05:21:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214507</guid>
		<description><![CDATA[I used to keep a weak password.. Than several years ago, my email was hacked, now I use a password manager...]]></description>
		<content:encoded><![CDATA[<p>I used to keep a weak password.. Than several years ago, my email was hacked, now I use a password manager&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Piedy</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214505</link>
		<dc:creator>Piedy</dc:creator>
		<pubDate>Sat, 02 Jun 2012 05:19:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214505</guid>
		<description><![CDATA[Unfortunately many sites make it hard to use a good password (as you describe) because they limit the # of characters, and don&#039;t let me use non-alphanumeric. That&#039;s lazy programming on their side and puts their customers at risk. I too use a password generation program and store them in a single encrypted password program (which I backup to multiple places on each change).]]></description>
		<content:encoded><![CDATA[<p>Unfortunately many sites make it hard to use a good password (as you describe) because they limit the # of characters, and don&#8217;t let me use non-alphanumeric. That&#8217;s lazy programming on their side and puts their customers at risk. I too use a password generation program and store them in a single encrypted password program (which I backup to multiple places on each change).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rosewater</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214504</link>
		<dc:creator>Rosewater</dc:creator>
		<pubDate>Sat, 02 Jun 2012 05:11:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214504</guid>
		<description><![CDATA[&quot; every identifiable group of users generated a comparably weak password distribution&quot; doesn&#039;t mean that every password was weak - just that the distribution breakdown was generally weak; There will always be outliers - I suspect if you look at the actual report you&#039;d find how common those outliers are. No where did he say that &quot;all people pick terrible passwords&quot;. ]]></description>
		<content:encoded><![CDATA[<p>&#8221; every identifiable group of users generated a comparably weak password distribution&#8221; doesn&#8217;t mean that every password was weak &#8211; just that the distribution breakdown was generally weak; There will always be outliers &#8211; I suspect if you look at the actual report you&#8217;d find how common those outliers are. No where did he say that &#8220;all people pick terrible passwords&#8221;. </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Luke Solis</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214503</link>
		<dc:creator>Luke Solis</dc:creator>
		<pubDate>Sat, 02 Jun 2012 05:03:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214503</guid>
		<description><![CDATA[If I need to log into the account many times a day, or doesn&#039;t have an option for me to Lastpass the password. It will be weak. other then that, I use LastPass to manage my passwords for me.]]></description>
		<content:encoded><![CDATA[<p>If I need to log into the account many times a day, or doesn&#8217;t have an option for me to Lastpass the password. It will be weak. other then that, I use LastPass to manage my passwords for me.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mrpete</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214502</link>
		<dc:creator>mrpete</dc:creator>
		<pubDate>Sat, 02 Jun 2012 04:56:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214502</guid>
		<description><![CDATA[Never use anything that looks like a &quot;word&quot; for a password!
~
An Excellent way to create a computer password is to use a &quot;pass phrase.&quot; Here&#039;s how to do it ...
~
Your password (PW) length should be at least 8 characters.
~
Pick a &quot;pass phrase&quot; and use the first letters of the words to form the PW. For example, use this phrase: &quot;four score and seven years ago.&quot; Use the first letters of the &quot;phrase words&quot; to form the PW. See below ...
~
four
score
and
seven
years
ago
~
Initial effort PW = fsasya
~
Throw in a number and a special character (or two) in a place that seems natural for you.
~
Second effort PW = fsa72!sya
~
Then put one or more (not all) of the characters in CAPS.
~
Final effort PW = fsa72!Sya
~
That&#039;s a VERY strong password and it&#039;s not very difficult to remember. But don&#039;t use a phrase as well known as &quot;four score and seven years ago.&quot; This is just an example.]]></description>
		<content:encoded><![CDATA[<p>Never use anything that looks like a &#8220;word&#8221; for a password!<br />
~<br />
An Excellent way to create a computer password is to use a &#8220;pass phrase.&#8221; Here&#8217;s how to do it &#8230;<br />
~<br />
Your password (PW) length should be at least 8 characters.<br />
~<br />
Pick a &#8220;pass phrase&#8221; and use the first letters of the words to form the PW. For example, use this phrase: &#8220;four score and seven years ago.&#8221; Use the first letters of the &#8220;phrase words&#8221; to form the PW. See below &#8230;<br />
~<br />
four<br />
score<br />
and<br />
seven<br />
years<br />
ago<br />
~<br />
Initial effort PW = fsasya<br />
~<br />
Throw in a number and a special character (or two) in a place that seems natural for you.<br />
~<br />
Second effort PW = fsa72!sya<br />
~<br />
Then put one or more (not all) of the characters in CAPS.<br />
~<br />
Final effort PW = fsa72!Sya<br />
~<br />
That&#8217;s a VERY strong password and it&#8217;s not very difficult to remember. But don&#8217;t use a phrase as well known as &#8220;four score and seven years ago.&#8221; This is just an example.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Richard D</title>
		<link>http://www.slashgear.com/university-of-cambridge-conducts-largest-ever-password-study-01231298/#comment-214500</link>
		<dc:creator>Richard D</dc:creator>
		<pubDate>Sat, 02 Jun 2012 04:39:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.slashgear.com/?p=231298#comment-214500</guid>
		<description><![CDATA[Most people pick terrible passwords, therefore all people pick terrible passwords? I find your lack of logic disturbing.]]></description>
		<content:encoded><![CDATA[<p>Most people pick terrible passwords, therefore all people pick terrible passwords? I find your lack of logic disturbing.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
