, 2004-05-26
For the 70% of the population that will trade their computer password for a bar of chocolate, this one's for you.
Expand all |
Post comment
Pass the Chocolate
2004-06-01
Tommy Ward (2 replies)
Tommy Ward (2 replies)

Likewise, you want Bruce Shneier's passwords? You mug him!
The lesson is that the wallet is already kept reasonably secure: I know where it is at effetively all times, and the union of people who would want to steel my wallet is very different from those who would break into my account, and I'd know it if my wallet went missing anyway.
Likewise, all the funky pin based authentication tokens are doing the same thing, giving you a physical device, which you stick in either your wallet (cardkey-shaped) or keychain (keyfob-shaped), attaching the secret into something you really care about.
Now you really CAN bang on random keys, get a purely random password, and until repetition makes you remember it, you have ready access.
[ reply ]
Link to this comment: http://www.securityfocus.com/comments/columns/245/26487#26487