About

This page contains a single entry from the blog posted on October 19, 2006 10:09 AM.

The previous post in this blog was Is the botnet battle already lost?.

The next post in this blog is Identity federation getting dose of reality from Internet2 affiliate.

Many more can be found on the main index page or by looking through the archives.

« Is the botnet battle already lost? | Main | Identity federation getting dose of reality from Internet2 affiliate »

Protecting your passwords

Are you like me having trouble remembering all the uids and passwords you use? Do you keep using the same id and password over and over for all the sites? As you get older, are you forgetting which site you used which password for? Are you writing the passwords down or keeping them on your computer unsecurely?

While I am against the use of keyboard entered passwords in general, the facts are we are stuck with using them. Therefore, I strongly recommend the use of free software, Password Safe, originally produced by Bruce Schneier, the internet security guru.

This is a password vault using Schneier's Blowfish encryption. It is very easy to use and will help you stop forgetting your id and passwords, writing them down or storing them on your computer unsecurely.

However, note that the vault is protected by a....password! Therefore, the overall security is weak. Why? The password can be obtained by a hardware or software keyboard logger, guessed at using social engineering or cracked by a brute force attack.

Having said that, it is a better alternative than writing them down, forgetting them or storing them unsecurely.

Guy
www.authenticationworld.com
guy.huntington@authenticationworld.com

TrackBack

TrackBack URL for this entry:
http://www.authenticationworld.com/cgi-bin/blog/mt-tb.cgi/10

Post a comment

(If you haven't left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won't appear on the entry. Thanks for waiting.)