A Cautionary Tale
Posted: Wed Nov 05, 2014 9:40 am
I recently had my website hacked. Actually, when I had a look at the files, I discovered evidence of three different hacks: the first had simply left a calling card in the form of a widowed file (i.e. present on the website but with no links from any page), the second had uploaded about 30 pages of shoes and handbags for sale, whist the third had replaced the index page with one bragging about his successful hack.
Now I had deliberately left the randomly-generated password I had received from the provider unchanged, supposing that it was secure enough. How wrong I was! At only eight characters long (three lower case, three upper case and two digits), my on-line research very quickly showed that it was woefully inadequate.
In total, I must have spent a couple of hours researching passwords, and came to the conclusion that the two keys to a secure password are i) length and ii) the inclusion on non-alphanumeric characters (e.g. punctuation, currency symbols etc.)
This webpage carries an interesting discussion of just what constitutes an good password, whilst this page has a really good password strength checker. This website will give you an idea of how long it would take to crack your password.
I strongly suggest that you make the time to look at the links I’ve posted: you’ll never look at your passwords in the same light again!
Now I had deliberately left the randomly-generated password I had received from the provider unchanged, supposing that it was secure enough. How wrong I was! At only eight characters long (three lower case, three upper case and two digits), my on-line research very quickly showed that it was woefully inadequate.
In total, I must have spent a couple of hours researching passwords, and came to the conclusion that the two keys to a secure password are i) length and ii) the inclusion on non-alphanumeric characters (e.g. punctuation, currency symbols etc.)
This webpage carries an interesting discussion of just what constitutes an good password, whilst this page has a really good password strength checker. This website will give you an idea of how long it would take to crack your password.
I strongly suggest that you make the time to look at the links I’ve posted: you’ll never look at your passwords in the same light again!