- Joined
- Sep 22, 2021
Based except password managers are talmudic, use your memory. I use unique 25 character passwords on each website I'm registered on (not many) and I keep all of them only in my memory and nowhere else. How? The first 15 or so characters are the same for each website and it's only there to provide entropy so you're safe against brute force attacks; the second part of the password is unique and based on a common pattern you can deduce when you want to log in, e.g. the pattern could be each site's name in reverse like smrafiwik or elgoog. This part is useful so if a databreach happens on that site, you won't be compromised on other websites. I obviously don't use this particular pattern, but you can get creative and then you only have to remember the pattern and the universal part of the password, this way you don't have to rely on software and it also gets your noggin joggin.
You may give me the autistic rates now.
I think this method is possibly quite dangerous.
While it means you aren’t using the same password for different sites, any actual human looking through a leaked list of email addresses and passwords for a given site might very well spot the pattern of [weirdword][sitename], start guessing other sites, and be in with a good chance of getting in.
And how long until scripts using AI to do the pattern recognition and guessing are out there.