« Home | Windows and Linux access without knowing the passw... » | Changing MAC addresses in Windows » | Detecting encrypted data » | The daily life of an infosec professional » | Training » | The importance of timestamps » | Smart criminals punished harder than idiots » | HB Gary Responder Field Edition Evaluation » | The BBC Botnet » | Got my EnCE and CHFI, but I want more »

Stick your password on a post-it

Sean, over at F-Secure, came with a brilliant idea to put passwords on post-its. No, seriously, not being sarcastic here!
"And once you write them down, put them in your wallet. Think about it. What else do you carry in your wallet? That's right, your bank cards. And your bank cards contain your account name and account number."
He continues to explore his idea by explaining you need a PIN to use the bank card, and suggests a similar way for creating 2-factor passwords in a really simple way. Take a generic part, identifying for example the website it's for, then add a hard to remember random part, and the last part you don't write down but you keep it somewhere in the back of your head and this part you use for all your passwords. Than insert that last part in a manner you only know into the other parts which you have written down, and there you go.

Of course now don't all go using the same naming convention he uses in the example, invent your own, otherwise it's still quite obvious that passwords starting with 'ama' are for Amazon and those with 'gma' are for GMail. Pretty clever idea, I wish I had thought of it.

Labels:

Post a Comment

Links to this post

Create a Link

About me

  • I'm An Hilven
  • My CV
  • me

Interesting News

My Library


    Shelfari

Disclaimer