1. This website uses cookies to improve service and provide a tailored user experience. By using this site, you agree to this use. See our Cookie Policy.
    Dismiss Notice

Test your password strengh online

Discussion in 'BlackHat Lounge' started by M4DM4X, Aug 14, 2019.

  1. M4DM4X

    M4DM4X Power Member

    Joined:
    Jan 21, 2015
    Messages:
    670
    Likes Received:
    167
    Don't put your real passwords, but something similar.
    The algorythm has been developped by dropbox (and considered as one of the best out there to check passwords strength/entropy). All the others are quite garbage.

    https://lowe.github.io/tryzxcvbn/

    Mine is cracked under 2 seconds haha, time to change it
     
    • Thanks Thanks x 1
  2. underachieved

    underachieved Elite Member

    Joined:
    Aug 24, 2010
    Messages:
    1,825
    Likes Received:
    962
    Occupation:
    IM
    Location:
    Cyberspace
    Yeah I wouldn't put my password on there...


    Good passwords are made up words that do not exist, and not just random characters.

     
    • Thanks Thanks x 2
    Last edited: Aug 14, 2019
  3. M4DM4X

    M4DM4X Power Member

    Joined:
    Jan 21, 2015
    Messages:
    670
    Likes Received:
    167
    Best passwords are those composed of 4 words which have nothing to do together, like :
    meatcryinghorseuniverse
    (this one requires centuries to be cracked)

    You can add some special characters at the end and you'll be safe for the next thousand years.

    See examples on the url I provided in my op
     
  4. JetBlack101

    JetBlack101 Junior Member

    Joined:
    Jun 29, 2019
    Messages:
    136
    Likes Received:
    43
    Gender:
    Male
    Occupation:
    Giblet
    Location:
    Your Gov
    That is so cool. I like seeing how it works through the possibilities and gives you time to break
    Great share.
     
  5. davids355

    davids355 Moderator Staff Member Moderator Jr. VIP

    Joined:
    Apr 25, 2011
    Messages:
    14,805
    Likes Received:
    13,418
    Home Page:
    I’m using non-dictionary words, upper, lower, number and special character + ones not found on any compromised lists.

    Chuck MFA into that pot as well and I think it’s pretty safe.

    meatcryinghorseuniverse!45A

    4 years even with 10 billion guesses per second.
    That’s now my new password :suspicious:
     
    • Thanks Thanks x 1
  6. Azaan

    Azaan Junior Member

    Joined:
    Jul 27, 2018
    Messages:
    192
    Likes Received:
    87
    Gender:
    Male
    Occupation:
    Sitting on my arse
    Location:
    Two Doors Down
    Stacking some old passwords together makes it centuries to crack even at 10B, and I can still remember it lol. Then again, they could crack them both and put them together :)
     
  7. M4DM4X

    M4DM4X Power Member

    Joined:
    Jan 21, 2015
    Messages:
    670
    Likes Received:
    167
    That's weird how simple words put together can make a very strong password.
    These kind of pswds are easy to memorize too.
    I know your bhw password now let's see what it feels like to be a mod haha
     
    • Thanks Thanks x 1
  8. underachieved

    underachieved Elite Member

    Joined:
    Aug 24, 2010
    Messages:
    1,825
    Likes Received:
    962
    Occupation:
    IM
    Location:
    Cyberspace
    [​IMG]

    Now that's a password.
     
    • Thanks Thanks x 1
  9. M4DM4X

    M4DM4X Power Member

    Joined:
    Jan 21, 2015
    Messages:
    670
    Likes Received:
    167
    When Quantum computing will be available at a big scale I don't know what we'll use as passwords because all the strong ones we have now will be cracked in a heart beat .
     
  10. PinguSpy

    PinguSpy Jr. VIP Jr. VIP

    Joined:
    Dec 7, 2007
    Messages:
    2,080
    Likes Received:
    1,964
    Occupation:
    unemployee
    Location:
    2001:4860:4860::8888
    Lastpass > generate password
     
  11. M4DM4X

    M4DM4X Power Member

    Joined:
    Jan 21, 2015
    Messages:
    670
    Likes Received:
    167
    Lastpass saves passwords on their clouds, no thanks. And not open source.
     
  12. MountainGuy

    MountainGuy Regular Member

    Joined:
    Jul 9, 2019
    Messages:
    251
    Likes Received:
    131
    It all depends on where your password is stored. Depending on how the passwords are stored the special characters sometimes show up un encrypted actually making passwords much easier to crack. That being said I have always heard the unrealted words strung together is very powerful.

    CandyDinosaurCaptainMaxwell free password if you need one .. I like to have one that only takes 50 mins if your doing 10b/second in case uncle sam needs to hack my stuff some day
     
  13. M4DM4X

    M4DM4X Power Member

    Joined:
    Jan 21, 2015
    Messages:
    670
    Likes Received:
    167
    Yep CandyDinosaurCaptainMaxwell is a very strong password.
    I don't even know if there is a computer powerful enough that can throw 10b/second tries at a password's face...
     
  14. coolbreez

    coolbreez Regular Member

    Joined:
    Apr 30, 2019
    Messages:
    210
    Likes Received:
    126
    Gender:
    Male
    Looks like another one of those tools used to monitor people's online behaviour. Even if you don't put your main password, a pattern could be formed. Your initial inputs logged which builds a character profile. Similar to those password management services that have keep rising up recently.

    Or maybe I'm just being cynical, sorry haha.
     
  15. Brilliant Digital Services

    Brilliant Digital Services Jr. VIP Jr. VIP

    Joined:
    Jul 26, 2018
    Messages:
    845
    Likes Received:
    182
    Occupation:
    SEO Consultant
    Location:
    BHW
    For BHW? Or for your email or what's your user name. I missed it.
     
  16. Ncp889

    Ncp889 Registered Member

    Joined:
    Sep 15, 2018
    Messages:
    76
    Likes Received:
    36
    Gender:
    Male
    Location:
    Canada
    My new password is pretty fucking hard to crack.

    I woke up in the middle of the night last night to learn someone changed my password on Epic Games without resetting it. Scary...

    Come to find out Epic Games is getting sued for a data breach and not reporting it.
     
  17. PinguSpy

    PinguSpy Jr. VIP Jr. VIP

    Joined:
    Dec 7, 2007
    Messages:
    2,080
    Likes Received:
    1,964
    Occupation:
    unemployee
    Location:
    2001:4860:4860::8888
    Let me teach you how to create the most hardest password to crack.
    But easy to remember.

    Example:

    X&@%$^&*()@#$%^&*$#@


    X = Any letter, or word.
    &@%$^&*()@#$%^&*$#@ = Press 'Shift', and then you just type any random number, such as your phone number, repeat number, etc.


    That's it.

     
    • Thanks Thanks x 1
  18. davids355

    davids355 Moderator Staff Member Moderator Jr. VIP

    Joined:
    Apr 25, 2011
    Messages:
    14,805
    Likes Received:
    13,418
    Home Page:
    [​IMG]

    :D:cool::p
     
    • Thanks Thanks x 1
  19. Amine Black

    Amine Black Newbie

    Joined:
    Aug 3, 2019
    Messages:
    4
    Likes Received:
    0
    Gender:
    Male
    looool too lazy to try it, i'll pass
     
  20. ContentExpert

    ContentExpert Jr. VIP Jr. VIP

    Joined:
    Jan 16, 2017
    Messages:
    1,519
    Likes Received:
    1,683
    Occupation:
    Your Content Writer
    Location:
    USA - Orlando, FL
    Home Page:
    What if the site pixel tracks you to the site(s) you use your tested password(s) on? :O