Home News Long random passwords can shield against hacking: Expert

Long random passwords can shield against hacking: Expert

4 min read

W DELHI: With Yahooannouncing a massive data breach last week where 500 million of its user accounts were compromised in 2014, experts feel that the trick to avoid email account hacking is to use really long random string for a password.

“The password length should be at least 20 characters, but preferably 32,” said lead researcher Jarno Niemela from the European cyber security provider F-Secure.

READ ALSO:Yahoo may face scrutiny over ‘hiding’ hacking details

Criminals who attempt to hack the password databases use various forms of attacks based on words found in the dictionary.

This method usually works quite well because so many users pick terrible passwords.

“Humans in general are really bad password generators. No matter how unique you think your password is, its components are still likely to be in some dictionary, and a powerful cracking cluster will come up with the exactly right combination,” Niemela said in a statement on Sunday.

But there are a few catches for this tip and two of them depend on the security practices of the service one is using.

First, the site or app has to accept long passwords and then the developers behind the software have to use any kind of “hashing” for the passwords they store.

Hashing employs an algorithm to hide passwords so they are not stored in clear text.

“So, you, as a customer, cannot affect what kind of password storage the service providers are using,” he says, adding, “But you can still frustrate all but the most advanced attacker’s efforts by using long enough random passwords.”

So now you may be thinking: “Great! I have uncrackable passwords. They are also impossible to memorise.”

READ ALSO:Yahoo sued for world’s biggest hacking ever

Jarno recommended “some form of password storage” like F-Secure KEY which you can use on one device for free.

Many password lockers like KEY will help you generate extra long passwords, too.

“Also it might be a good idea to use a unique user name per service, and maybe unique email for critical services,” Jarno said.

The unique user name will give you added privacy as you cannot be tracked easily across services.

[source;gadgetsnow]

Load More Related Articles
  • Aloe Vera

    Aloe Vera is truly ideal to fight anything associated with frame and hair, evidently. it i…
  • Curry Leaves and Coconut Oil

    treatments for hair increase are incomplete with out the inclusion of curry leaves into it…
  • Egg, Honey and Olive Oil blend

    The combination of egg, honey and olive oil makes this treatment one of the robust natural…
  • Egg mask

    Egg mask is one of the best home remedies for dull hair. restoration residences of the egg…
  • Hair Oil rubdown

      step one that you can take to lessen hair loss is to rub down your scalp with appro…
  • ASUS ROG unveils new gaming notebook at Rs 94,990

    New Delhi: Under its Republic of Gamers (ROG) series, Taiwanese company ASUS on Thursday l…
Load More By Sayantani Singha
Load More In News
Comments are closed.