You must use at least one uppercase letter,big tits amateur sex videos a symbol, and a number. Or, wait, maybe not.
According to the experts at the National Institute of Standards and Technology (NIST), some of the password-strength requirements drilled into our skulls over the years are actually not that helpful.
What's worse, they may be counterproductive.
SEE ALSO: New tool teaches you how to set stronger passwordsAs such, the institute issued a new draft of security guidelines on May 11, 2017, aimed at security professionals and recommending several significant changes to the password requirements we've come to accept as a necessary part of life.
What's different? Well, for one, the experts say that forcing users to create passwords which include numbers and random characters is no longer necessary.
"[Online] services have introduced rules in an effort to increase the complexity of [passwords]," reads the draft appendix. "The most notable form of these is composition rules, which require the user to choose passwords constructed using a mix of character types, such as at least one digit, uppercase letter, and symbol. However, analyses of breached password databases reveals that the benefit of such rules is not nearly as significant as initially thought, although the impact on usability and memorability is severe."
Basically, passwords full of #'s and &'s are hard to remember, and they don't actually offer that much of a benefit. Instead, NIST recommends that people be allowed to choose any password of 8 characters or more — with a catch.
The catch being that whatever the user selects should be compared against a list of known common passwords. Lists of stolen passwords exist, and if the key to your email account is something like "monkey" then NIST says it should be rejected.
Who is doing the work of comparing your desired password against the aforementioned list? Don't worry, it's not you. Instead, that responsibility would theoretically fall to whatever service you're trying to create an account with.
What else does NIST throw out the digital window? Why that would be a little annoying thing called forced password resets. That's right, it turns out obligating users to change their passwords — regardless of any data breaches or lack thereof — is counterproductive. Of course, if a company discovers it's been hacked, you should still be required to reset your login information.
The experts at NIST also go after what is a huge pet peeve of mine: security questions. Preset security questions that a user is forced to fill out, like "what high school did you attend," are easily discovered by hackers via a simple Google search (as Sarah Palin once painfully discovered) and should be done away with entirely.
"Verifiers also SHALL NOT prompt subscribers to use specific types of information (e.g., 'What was the name of your first pet?') when choosing memorized secrets," the draft declaratively states. Nice.
So, to recap: No special characters required, no forced password resets, and no fixed (easily guessable) security questions. It's almost like all the password security advice we've been given is wrong.
Except that chestnut about using two-factor authentication. You should still definitely do that.
Topics Cybersecurity
DoorDash glitch results in hundreds of free food ordersWhat’s Next for Karl Ove Knausgaard?The Amorality of Robot CarsThe Political Novel: An Interview with Édouard LouisNow Online: Our Interviews with Gordon Lish and Jane & Michael SternAnagramming the News: The AnswersTikTok clarifies its moderating policies amid IsraelThe 10 best and funniest tweets of the week, including a squid guy and alcoholic salad dressingFrancis Buckland Wanted to Save (and Eat) Every AnimalNow Online: Our Interviews with Gordon Lish and Jane & Michael SternAnagramming the News: Can You Solve These 25 Puzzles?What is an inadequate pap smear test?What the World Needs Now Is More Geodesic DomesI Feel Sorry for People Who Don’t Suffer FoolsEcho: Five Digital Paintings by Miao XiaochunTrump's exJanine di Giovanni: The Art of War ReportingNow Online: Our Interviews with Gordon Lish and Jane & Michael SternBranded Man: The Long Tradition of Outlaw PoetsNeed a Mirror? You’re in Luck: They’re Everywhere This controversial website is targeting 'radical' left If Neil deGrasse Tyson ever puts out an album, the internet has cover art suggestions Amazon Kindle finally gets support for Hindi and other Indian languages The list of musicians supporting #NoDAPL reads like a festival lineup NFL games, 'Star Trek' soon to stream on CBS All Access Surprise wintery beverage debuts at Starbucks today Woman hung 10,000 rainbow Christmas lights to protest a homophobic neighbor New element names are the scientific equivalent of dad jokes An NBA game got postponed, so players made do with Hennessy and cheesesteaks 'Full House' creator buys 'Full House' house to feel full Dudes Snapchat baby penguin they found wandering through city drain Magic mushrooms ease anxiety in cancer patients, studies show Listen: Childish Gambino's funk odyssey 'Awaken, My Love' is here Sasha Obama slays as she raps along with Chance the Rapper Winning: Your chocolate bar to taste just as sweet, with 40% less sugar All the 'Harry Potter' Easter eggs you missed in the 'Fantastic Beasts' opening OnePlus 3T launched in India, prices start from $439 'Rogue One,' 'Doctor Strange' make the Oscar VFX contenders short Bottle flipping is being used to teach kids probability in school now In a first for Star Wars, 'Rogue One' clips and opening scenes revealed
1.5918s , 10521.3359375 kb
Copyright © 2025 Powered by 【big tits amateur sex videos】,Evergreen Information Network