On CBSNews.com: Aniston: What Jolie Did Was "Uncool"
BNET Business Network:
BNET
TechRepublic
ZDNet

May 30th, 2008

Either choose strong passwords, or don’t bother with a password at all

Posted by Adrian Kingsley-Hughes @ 11:40 am

Categories: How to ...

Tags: Password, Strong Password, Adrian Kingsley-Hughes

Earlier today I downloaded the latest Live CD for Ophcrack, the Windows password cracker, and tried it out on a Vista install to see how good of a password buster it is.

Conclusion: Either choose strong passwords, or don’t bother with a password at all.

Here’s the test - I took a virtual PC that uses Windows Vista that I’ve been sharing with a few friends (Fred, Barney, Betty and Wilma … you might know them) and put this up against the Live CD to see how many passwords I could recover.

The process went something like this:

  • Download Ophcrack Live CD
  • Burn a CD (although I didn’t need to do this - I just booted the virtual machine off the .ISO file)
  • Let Ophcrack do its stuff

Gallery here

 

 

 

The results were quite staggering. In less than 50 seconds three weak passwords had been recovered (shame on you pcdoc, Fred and Betty … I’m not letting you on my systems again). However, two much longer and more complex passwords (one consisting of alphanumeric characters, the other more complex) survived.

You have been warned …

Want to get in touch? Feel free to drop me a note!

Right to Reply: Should any industry representatives wish to comment on any posts on Hardware 2.0, I will be happy to publish their reply verbatim on this blog.

Adrian is a technology journalist and author who has devoted over a decade to helping users get the most from technology. He also runs a popular blog called The PC Doctor. See his full profile and disclosure of his industry affiliations.

  • Talkback
  • Most Recent of 22 Talkback(s)
RE: Either choose strong passwords, or don't bother with a password at all
I work for Passpack which is an online password manager and seeing as how the average user reuses the same password across sites - Fred and Betty may have a few more problems on their hands...

... (Read the rest)
Posted by: Louise V Posted on: 06/18/08 You are currently: Logged In | Log out
Strong login ids too! _dietrich   | 05/30/08
RE: Either choose strong passwords garybs   | 05/30/08
Download it and find out...(NT) JCitizen   | 05/31/08
Downloading now soonerproud   | 05/30/08
A useful tool itpro_z   | 05/30/08
GRC has a great password generator marks055@...   | 05/30/08
Good grief, folks, it doesn't matter! dave.leigh@...   | 05/30/08
The nth degree _dietrich   | 05/31/08
Another use for OphCrack Lizzie_B   | 05/31/08
Weak passwords are certainly bad, but they do protect you well in some case georgeou   | 06/01/08
It's pretty easy to set up an offline attack CobraA1   | 06/01/08
Multiple factor authentication CobraA1   | 06/01/08
Right... dave.leigh@...   | 06/01/08
Now I'm scared Hrothgar - PCLinuxOS User   | 06/01/08
Master Joe Says... MasterJoe   | 06/02/08
RE: Either choose strong passwords, or don't bother with a password at all rhane@...   | 06/02/08
Not all that mike@...   | 06/02/08
RE: Either choose strong passwords, or don't bother with a password at all Ceridan   | 06/03/08
That's why... Cornhead   | 06/04/08
RE: Either choose strong passwords, or don't bother with a password at all flippytheclown   | 06/09/08
To Avoid LM Hash, I Always Use Passwords Greater Than 15 Characters chessmen   | 06/16/08
RE: Either choose strong passwords, or don't bother with a password at all Louise V   | 06/18/08

What do you think?

One Trackback

The URI to TrackBack this entry is:
http://blogs.zdnet.com/hardware/wp-trackback.php?p=1998

  • Either choose strong passwords, or don't bother with a password at all
    Adrian Kingsley-Hughes: Earlier today I downloaded the latest Live CD for Ophcrack, the Windows password cracker, and tried it out on a Vista install to see how good of a password buster it is. Conclusion: Either choose strong passwords ...

    Trackback by keznews.com - Windows portal - News — May 30, 2008 @ 10:31 pm

advertisement

Recent Entries

advertisement

Archives

ZDNet Blogs

Fusion

advertisement
Click Here