- Joined
- Oct 18, 2022
Okay, so let's say my password would be something likeThis is some napkin math, correct me if I'm wrong:
If you're picking a sentence then it doesn't matter because the attacker could just brute force with sentences, assuming they're not doing markov chain related attacks.
Assuming an average book has 20000 sentences, taking a sentence out of the 1000 most popular books, you're looking at about ~24.3 bits of entropy, less than 6 randomly picked lowercase English characters.
"War and Peace, from the 222 page pick the first word with interpunction mark if any, do it for 20 next pages for 20 words total"
it would give 20 unrelated, randomly capitalized words with random special characters. Would it be good enough?
Password managers make me suspicious for some reason. What if you're stranded without one and need to login from some random cafe? You can google War and Peace everywhere.
What if FBI gets your password manager? Can't they just brute force the master password or crack the software?
What if your password manager gets corrupted by, say, a hard drive malfunction?
What's the advantage of using one instead of writing your passwords down (excluding the "FBI arrests you and your password notebook" whataboutism Null loves to answer that question with)?