Linked by Howard Fosdick on Sat 10th Nov 2012 07:28 UTC
Thread beginning with comment 542137
To view parent comment, click here.
To read all comments associated with this story, please click here.
To view parent comment, click here.
To read all comments associated with this story, please click here.
RE[4]: Comment by Luminair
by Luminair on Mon 12th Nov 2012 18:56
in reply to "RE[3]: Comment by Luminair"
so far I've got no proof of what I said, and you've got proof of what I said. not looking good for you so far, but thanks:
passwords longer than nine or 10 characters require rainbow tables with unwieldy file sizes. That leaves only a small sweet spot of seven or eight characters where rainbow tables are especially useful these days.
RE[5]: Comment by Luminair
by Laurence on Mon 12th Nov 2012 22:11
in reply to "RE[4]: Comment by Luminair"
so far I've got no proof of what I said, and you've got proof of what I said. not looking good for you so far, but thanks:
Clearly you just skipped to the pretty pictures because that article repeatedly talked about how the preferred method of attack has now shifted to using advanced dictionary attacks which are fine tuned to crack passphrases. In that that was pretty much the basis for the whole f--king story.
The quote you lifted was just in reference to the older technique of using rainbow tables and how it's modern applications are limited due to better cracking routines and more powerful computers. So it's not even relevant to this discussion.
But who actually gives a shit about facts when you can instead offer up security advice like the egotistical novice that you are. And what's the point in talking to me like a human being when you can act like a complete c*nt instead. After all, what's the point in using intelligence and research to make a point when you can hide your stupidity behind blind arrogance. Smoothly done asshole. <_<
Edited 2012-11-12 22:18 UTC





Member since:
2007-03-26
They would be dictionary attacked easily.
Modern dictionary attacks are designed to target passphrases just like that.
I've discussed dictionary attacks earlier in this thread, so have a read through that. Alternatively, read an account from some professionals in the field: http://arstechnica.com/security/2012/08/passwords-under-assault/