How to create cryptographically-secure passphrase using dice and EFF wordlist

Поділитися
Вставка
  • Опубліковано 16 вер 2024

КОМЕНТАРІ • 38

  • @ve4154
    @ve4154 2 роки тому +4

    This is such a coincidence! I just today implemented an EFF wordlist based passphrase generator for my pet project. Thank you Sun :)

  • @sophiegadoury830
    @sophiegadoury830 2 роки тому +2

    Thanks for creating this printer-friendly version; so much better that way!!!!!!!!!! Very cool UX indeed 👍🏻

  • @draztiqmeshaz6226
    @draztiqmeshaz6226 2 роки тому +13

    This is really cool, and I have a question: Aren't word lists a common resource for brute-force cracking? If you use a known list, does that not then shrink the search space drastically?

    • @sunknudsen
      @sunknudsen  2 роки тому +9

      Yes, but thankfully, it isn’t a problem… interestingly enough, most crypto wallets are backed up using mnemonics (many of which use the BIP39 wordlist made up of 2048 words). When one uses a good key derivation function, key space is too large to brute force). See sunknudsen.com/stories/exploring-the-password-policy-rabbit-hole.

    • @draztiqmeshaz6226
      @draztiqmeshaz6226 2 роки тому

      @@asificam1 thank you for that!

  • @Leo-Crespi
    @Leo-Crespi 2 роки тому +1

    Really enjoyed the podcast episode, good stuff! Happy new year, Sun.

    • @sunknudsen
      @sunknudsen  2 роки тому

      Glad you enjoyed podcast… Happy new year!

  • @androbuntu
    @androbuntu 2 роки тому

    Thanks Sun, I always learning something new from your channel.

  • @dimalunga-n2q
    @dimalunga-n2q 5 місяців тому

    awesome content, very digestible format and the sequence makes sense, god transition into shoutout, what's not to like here, hmmm, i still don't understand why 5 words are secure compared to a random password generator like avast that uses different input characters

  • @micpom8460
    @micpom8460 2 роки тому +1

    Invaluable guide. Thank you

  • @galaxytrio
    @galaxytrio Рік тому

    Thanks, Sun. Very useful.

  • @dg9158
    @dg9158 2 роки тому

    You’re amazing sun ! Love this channel

    • @sunknudsen
      @sunknudsen  2 роки тому +1

      Thanks for the push David 🤓

  • @bahamu
    @bahamu 2 роки тому

    Awesome! I was just thinking about this today!

  • @rodrigomatos759
    @rodrigomatos759 2 роки тому +3

    Great video Sun. Off topic: could you share that wallpaper? I really hate the way bigsur and monterey make the top bar blend in based on the wallpaper's colors but this one you're using gives a cool/ dark look without being completely dark and doesn't look like it's part of the bezels

    • @sunknudsen
      @sunknudsen  2 роки тому +1

      Sure, here you go. unsplash.com/photos/pl7wrpPSm2o I agree image looks great on macOS… and I find it calming.

    • @rodrigomatos759
      @rodrigomatos759 2 роки тому

      @@sunknudsen Thanks!

  • @xblackrainbow
    @xblackrainbow 2 роки тому +2

    big fan of your works.... is there a way to make diceroll passphases for crypto/btc without installing any softwares to calculate the checksum (last word)?

  • @pipeliner8969
    @pipeliner8969 2 роки тому +1

    I wish Merry Secure Christmas

  • @Lafsimons
    @Lafsimons 2 роки тому +2

    Hi Sun, great video, I will print your lists and use them :) I have a question as I’m about to downgrade from Monterey to whether Big Sur or Catalina. What are you using or would you recommend?

    • @sunknudsen
      @sunknudsen  2 роки тому +1

      I would go for Big Sur while considering all versions of macOS a compromise between convenience and privacy. For example, I use Tails for “sensitive” use cases.

  • @plasmatech576
    @plasmatech576 2 роки тому +1

    I wonder if it is possible to do the last word sha256 checksum by hand.

  • @zecmikoko1172
    @zecmikoko1172 2 роки тому +1

    please could you reupload macos big sur episode? I really want to set up my mac right

  • @julianmahler2388
    @julianmahler2388 Рік тому

    How do you calculate the amount of $$$ it would cost to crack a password/passphrase?

  • @vineetchopra2446
    @vineetchopra2446 2 роки тому

    Hi sun. I am from India 🇮🇳. I like your videos. The firefox video was the first one I watched. As I have an Android phone and pc which is having windows 10. So can you make any video how to secure Android and window.
    I tried to disable every setting on my android but the setting app of phone have all the permissions and I can't even disable them.
    So can you give me any suggestions.

  • @JohnSmith-zl8rz
    @JohnSmith-zl8rz 7 місяців тому

    What if a computer take that list and make millions of combinations to guess the password, a Quantum computer or AI ?

  • @entertained5581
    @entertained5581 2 роки тому +1

    If I install an app using homebrew, is it better to uninstall it using homebrew or using the app-cleaner script? Thanks for the great content.

    • @sunknudsen
      @sunknudsen  2 роки тому +1

      Good question… my gut feeling would be to uninstall app using Homebrew. That said, there are pros and cons to both options. If one uninstalls app using app-clearner, I believe app will still be visible in Homebrew. If one uninstalls app using Homebrew, depending on uninstall script, uninstall might not be “clean”.

  • @greger589
    @greger589 2 роки тому +1

    I use a storyline where each word is in a different languages

  • @mw2randomCRAP
    @mw2randomCRAP 2 роки тому

    can you add donations via the lightning network?

  • @hamadsaid7212
    @hamadsaid7212 2 роки тому

    How about trezor password manager !?

  • @GabrielHenrique-jl2ex
    @GabrielHenrique-jl2ex Рік тому

    Where I can buy dices like that? I just found on eBay but I'm not sure if they are original or just replica

    • @sunknudsen
      @sunknudsen  Рік тому +1

      Hey Gabriel, typically they can be found in board game stores… or perhaps on Amazon?

  • @MikeHunt-rw4gf
    @MikeHunt-rw4gf 2 роки тому +2

    Algorithm.

  • @notabene9630
    @notabene9630 2 роки тому

    I know it's not related to the subject but as a french speaker, using the pronoun "one" as an undefinite pronoun is very painful to process for my brain

    • @sunknudsen
      @sunknudsen  2 роки тому +1

      I agree… took me some getting used to. What I appreciate of “one” is it isn’t incriminating by design.