Securing Your Accounts With Well-Crafted Passwords


In the past I've never really paid much attention to security issues when it comes to user names and passwords. Frankly I figured it was all a lot of overblown hype. This led to an unfortunate incident that involved my website being attacked, apparently by a skillful youth with a propensity for mischief.

The main security flaw with my website was probably the simple fact that the username and password were exactly the same. Granted I did realize that this wasn't highly intelligent but I didn't have the power to change it myself, and I didn't think it really mattered enough to bother about it. Having an identical username and password is a massive "no-no" in computer security. Your username and password should not even be related along the same line of thought. A username of "Dragon" and a password of "Fire" is not a secure combination.

For maximum security, passwords should not be cohesive words or phrases and should not be too obviously related to something like your birthday or the birthday of someone close to you. Personal information is one of the first things used when people attempt to break passwords. Having a password of "Password" is indeed humorous and ironic but it is not in the least bit secure.

A "brute force" password hacking technique involves using certain rules and guidelines to take a guess at possible passwords and generally works through a dictionary of sorts, trying combinations of possible words and common characters. Your best bet at creating a secure password is to pick a random collection of letters, numbers, and symbols, including varying case changes (in a password the letter "a" is not the same as the letter "A", so alternating at random between upper and lower case will increase the difficulty encountered in cracking your password). Selecting a sequence of characters on the keyboard (such as "asdf" or, worse, "1234") definitely does not create a secure, random password.

Having symbols in your password is an easy way to greatly increase security. These are the special characters accessed by holding the "Shift" key and pressing one of the numbers at the top of the keyboard. If you want to truly expand your arsenal of special characters, try holding down the "alt" key and pressing a combination of numbers on the num pad (the rectangular collection of numbers on the right hand side of most keyboards) then release "alt". For example, holding "alt" and pressing numbers, 1 then 6 then 8 and releasing "alt" will give the character "¿". Most combinations of 3 numbers will enter a different symbol into your password. This may make it a little harder to enter your password but it makes it a lot harder for anyone else to crack it.

To make passwords easier to remember you can use something original, like the name of your favorite character in a book (personal information that other people won't know). Then add some numbers to it, perhaps use the "Leet speak" (check http://en.wikipedia.org/wiki/Leet for exact definition) method of changing letters to numbers and generally mix things up so that to you it seems coherent and memorable but to an automated pattern recognizer it seems random. For example, "jAm35_5m1Th¿" ("James Smith") is actually surprisingly secure. In this case the password's meaning is obvious to a human reader but it will take a lot of work for them to divine the password without prior knowledge (unless you've used your name or a close relative/friend's name which, as we've already discussed, is not a good idea).

For additional security you should not use the one user name and password for every account that you have. If you do and someone manages to get hold of your details for one site they pretty much have the run of your digital life. It is not particularly vital to have perfect passwords for less important accounts (e.g. web based email from Hotmail, forums you visit etc.). These sites can quite happily be accessed using the same password. However, bank accounts, work email etc. should be made as secure as possible.

Hopefully a few of these tips will assist you in making your online activities more secure. Keep these guidelines in mind, change your password on a semi regular basis, and with any luck you'll be able to avoid the hacking menace that befell me.

Daniel Punch
M6.Net Web Helpers
http://www.m6.net







Related News



Clippers' Kaman becomes German citizen for Games - CNN

Clippers' Kaman becomes German citizen for Games
CNN -13 hours ago
The 7-foot Kaman will add size to a German team seeking to qualify for its first Olympics since the 1992 Barcelona Games. "We'll be stronger under the ...

EA debuts new family, sports games for Wii, PlayStation - CNET News

CNET News

EA debuts new family, sports games for Wii, PlayStation
CNET News, CA -4 hours ago
With only a weeks to go before the 2008 E3 Media and Business Summit, video game publisher Electronic Arts is giving the press a sneak peek at its new video ...

Putin seeks to move venues for 2014 Winter Games - Los Angeles Times

The Associated Press

Putin seeks to move venues for 2014 Winter Games
Los Angeles Times, CA -9 hours ago
The Russian resort city was chosen last year to host the Games despite environmentalists’ concerns. According to AP, Putin called for the bobsled track and ...
Putin Directs Organizers of 2014 Winter Olympics to Protect WildernessWashington Post
Sochi 2014 Sliding Venue To Be RelocatedGamesBids.com
all 204 news articles

Video games a boon for families feeling the pinch - Times Online

Kotaku.com

Video games a boon for families feeling the pinch
Times Online, UK -4 hours ago
Families facing escalating household bills are turning to video games on the Nintendo Wii and PlayStation 3 for affordable fun. Game Group, the video games...
High-profile releases keep Game fit and healthyTelegraph.co.uk
Game Group H1 sales top hopes but shares fall on fears growth set ...Forbes
Game Sales Speed Up on `Wii Fit,' `Grand Theft Auto' (Update2)Bloomberg
The Press Association
all 33 news articles

Athletes caught doping face ban from 2012 Games - Globe and Mail

ABC News

Athletes caught doping face ban from 2012 Games
Globe and Mail, Canada -19 hours ago
24, a 25-per-cent increase over the 2004 Athens Games and 90-per-cent more than at Sydney in 2000. Athletes will be tested not only at Olympic venues, ...
IOC STEP UP GAMES TESTINGSportinglife.com
McDonald's plans extensive sponsorship for Beijing 2008 Olympic GamesQSR Web
Olympic drug testing stepping up fightABC Online
Canada NewsWire (press release) - Special Broadcasting Service
all 460 news articles


Rockies recover from Monday's debacle, win next two games. - Examiner.com

Washington Post

Rockies recover from Monday's debacle, win next two games.
Examiner.com -4 hours ago
Tuesday's game put this season's ace, Aaron Cook, on the mound. Cook threw a gem: a complete game shutout. Even more amazing, Cook needed only 79 pitches ...
Beyond the box score: 7/2/08San Diego Union Tribune
Rockies have nothing to worry about, yetSports Network
all 558 news articles

Olympics-Tennis-Mauresmo pulls out of Beijing Games - Reuters UK

SuperSport

Olympics-Tennis-Mauresmo pulls out of Beijing Games
Reuters UK, UK -17 hours ago
8-24 Games but could have been selected to play singles as well in the likely event of the withdrawal of Mary Pierce, who has not played for nearly two ...
Olympic Medalist, Wimbledon Champ Amelie Mauresmo Decides To Skip ...AHN
Amelie Mauresmo won't play in BeijingCBC.ca
all 148 news articles

Beijing promises no algae blooms in Games waters - Reuters

New York Daily News

Beijing promises no algae blooms in Games waters
Reuters -4 hours ago
"I can responsibly say that all of the waters at Olympic venues will not develop algae outbreaks, during and after the Games," Bi said. ...
Slingsby's green and gold GamesCentral Coast Express Advocate
Calligraphers add flourish to Beijing GamesPeople's Daily Online
Do ISAF rankings point to Olympic medals ?Sail World
AFP - guardian.co.uk
all 691 news articles

Times, TV set for first two football games - MLive.com

CollegeOTR

Times, TV set for first two football games
MLive.com, MI -Jul 2, 2008
Breathe easy, Michigan fans: The first two Michigan games will avoid the Big Ten Network (though that's less of a problem now). ...
Kickoff times set for 3 home football gamesLansing State Journal
OSU football: Three games picked up by Big Ten NetworkColumbus Dispatch
Times set for three Purdue football gamesJournal and Courier
Springfield News Sun - CollegeOTR
all 73 news articles

Free agency roundup: Fleury signs longterm - National Post

Free agency roundup: Fleury signs longterm
National Post, Canada -1 hour ago
Fleury led the Penguins to a spot in the Stanley Cup final this past season, eventually losing out to the Detroit Red Wings in six games. ...
Penguins re-sign Fleury, add FedotenkoCBC.ca
Penguins Re-Sign Fleury for Seven Yearshockeyfights.com
Penguins Add Two New Faces To Line UpWPXI.com
The Associated Press - Sports Network
all 312 news articles