I recently had my website hacked. Actually, when I had a look at the files, I discovered evidence of three different hacks: the first had simply left a calling card in the form of a widowed file (i.e. present on the website but with no links from any page), the second had uploaded about 30 pages of shoes and handbags for sale, whist the third had replaced the index page with one bragging about his successful hack.
Now I had deliberately left the randomly-generated password I had received from the provider unchanged, supposing that it was secure enough. How wrong I was! At only eight characters long (three lower case, three upper case and two digits), my on-line research very quickly showed that it was woefully inadequate.
In total, I must have spent a couple of hours researching passwords, and came to the conclusion that the two keys to a secure password are i) length and ii) the inclusion on non-alphanumeric characters (e.g. punctuation, currency symbols etc.)
This webpage carries an interesting discussion of just what constitutes an good password, whilst this page has a really good password strength checker. This website will give you an idea of how long it would take to crack your password.
I strongly suggest that you make the time to look at the links I’ve posted: you’ll never look at your passwords in the same light again!
A Cautionary Tale
Re: A Cautionary Tale
Very interesting - I checked all mine ( I use 3 mainly) and came with the following as run on a pc to crack them.
General one - 7 years
Memories site - 58 years
Moyboyz - 344, 000 years
I honestly believe it can be done quicker than this though
General one - 7 years
Memories site - 58 years
Moyboyz - 344, 000 years
I honestly believe it can be done quicker than this though
Re: A Cautionary Tale
I put in my main password I use most and it was 4 Billion years.
Tony
Tony
Re: A Cautionary Tale
Strong passwords are a must these days coupled with different passwords for different sites, but personally I wouldn't want to use a password strength checker.
John
There's nothing regular about wheels
There's nothing regular about wheels
- nickjones
- Site Admin
- Posts: 2355
- Joined: Tue Nov 20, 2012 12:54 am
- Location: Clacton on Sea, Essex, UK
Re: A Cautionary Tale
I have a 16 digit password that uses upper and lower case letters, numbers and punctuation marks. Hopefully it should keep the hackers out, at least for now.
Nick Jones.
In sunny Clacton-on-Sea, Essex, UK
In sunny Clacton-on-Sea, Essex, UK
Re: A Cautionary Tale
It is sensible to use currency and punctuation in passwords however these days hacking is not so much guessing them as stealing them so the best protection can be sites like ebay which randomly reject correct passwords so you enter them a 2nd time to prove you are sure!
Re: A Cautionary Tale
Clever!SMS88 wrote:It is sensible to use currency and punctuation in passwords however these days hacking is not so much guessing them as stealing them so the best protection can be sites like ebay which randomly reject correct passwords so you enter them a 2nd time to prove you are sure!
Re: A Cautionary Tale
Now i never knew that.......and that explains why i have had a couple of rejected attempts to log in, even though i was sure i had typed in my correct password!!SMS88 wrote:It is sensible to use currency and punctuation in passwords however these days hacking is not so much guessing them as stealing them so the best protection can be sites like ebay which randomly reject correct passwords so you enter them a 2nd time to prove you are sure!
MOTORMAN
"Kill all my demons and my angels will die too"
"Kill all my demons and my angels will die too"
Re: A Cautionary Tale
I am becoming increasily disillusioned with the company hosting my website (Active24). Can anyone recommend an alternative host based on first hand experience?
- nickjones
- Site Admin
- Posts: 2355
- Joined: Tue Nov 20, 2012 12:54 am
- Location: Clacton on Sea, Essex, UK
Re: A Cautionary Tale
I'm with hostgator, their service seems fairly stable and I would recommend them but Martin Avis is probably the one to ask.
Nick Jones.
In sunny Clacton-on-Sea, Essex, UK
In sunny Clacton-on-Sea, Essex, UK