Good, Bad or Ugly? – Theoretical Security in Password Creation Systems
Recently I’ve paid more attention to recommendations for memorized keys. Should I always use a number in my password? Is it really more secure to add that special character at the end every time? What are some real best practices when you’re telling people to create strong, memorable passwords? First, I’ll make some assumptions to help think about this.
I’m only talking about the passwords you absolutely must memorize – Otherwise we would all be better off using a password manager of some sort.