Password Security Best Practices

Поділитися
Вставка
  • Опубліковано 4 лют 2025

КОМЕНТАРІ • 1,2 тис.

  • @steveozone4910
    @steveozone4910 9 років тому +209

    Sometimes for fun when I'm at an ATM I like to shout out 4 random numbers when I enter my pin.

    • @mattr4078
      @mattr4078 9 років тому +5

      Wtf??!

    • @yosyp5905
      @yosyp5905 9 років тому +4

      AHAHAHAH :_D

    • @Xapper0
      @Xapper0 9 років тому +32

      +Steve Ozone Wouldn't that increase your chance of getting mugged, since someone believes that they have your pin?

    • @AwesomeOfAwesomest
      @AwesomeOfAwesomest 9 років тому +3

      im dead

    • @SSDragon19
      @SSDragon19 9 років тому +1

      +Steve Ozone when i have to type my pin, i like to look like im pressing other numbers, but not actually press them. but shouting them is nice too

  • @ZinxM8
    @ZinxM8 9 років тому +8

    The reason I like this channel so much is because whenever i watch a video i 99% of the time learn something new, and i find that so amazing. thanks Linus & the team.

  • @Gehab
    @Gehab 9 років тому +521

    Guys, what should I use instead of 69allday? ;(

  • @StellaSteve80
    @StellaSteve80 9 років тому +85

    I keep mine simple to remember it. I never forget Password123

    • @playingbadgames4199
      @playingbadgames4199 9 років тому +56

      *logs into your UA-cam account*

    • @StellaSteve80
      @StellaSteve80 9 років тому +22

      Oh great, all my Steam account and emails have been hacked now. I bet it was someone from here. Last time I trust the Internet.

    • @scottmckinstry1698
      @scottmckinstry1698 9 років тому +3

      +steve m LOL, when was that EVER a best practice?

    • @StellaSteve80
      @StellaSteve80 9 років тому +3

      Things keep getting worse for me. Now my PlayStation account has been hacked and my Amazon account suspended for attempted hacking.

    • @scottmckinstry1698
      @scottmckinstry1698 9 років тому +3

      steve m I really can't tell if you're being serious or just trolling at this point.

  • @andrewgalbraith1695
    @andrewgalbraith1695 9 років тому +322

    dat cheeky wink though.

    • @will1565
      @will1565 9 років тому +5

      +Andrew Galbraith It certainly made me chuckle

    • @DansTech
      @DansTech 9 років тому +1

      +will1565 Same here :)

    • @bailey2114
      @bailey2114 9 років тому +2

      Notice me Danpai.

    • @gromby783
      @gromby783 8 років тому

      +Andrew Galbraith
      dat

  • @seanmcmunn88
    @seanmcmunn88 9 років тому +60

    Password length limiters forcing to have only 10-12 characters at max with upper case, numbers, and symbols are the cancer of the internet

    • @stephenkamenar
      @stephenkamenar 4 роки тому +2

      how did society get here. that's the dumbest thing EVER yet so many people do it. has to be some kind of conspiracy.

  • @EdwarioERS
    @EdwarioERS 9 років тому +65

    "Don't Write Down Your Password."
    This is pretty safe depending on the security situation of where you live. Most people don't have to be paranoid about documents in a dresser drawer or under their bed.

    • @volundrfrey896
      @volundrfrey896 9 років тому +3

      The problem is when they do it at work, it's commonly recommended not to write it down for this reason. If you make it a habit at home you'll do it at work to.

    • @EdwarioERS
      @EdwarioERS 9 років тому +1

      Völundr Frey
      Depends on your job then too.

    • @volundrfrey896
      @volundrfrey896 9 років тому +2

      EdwardERS Sure, not everyone have computers at work. But if you do you probably have some information which shouldn't be available to the public.

    • @vgamesx1
      @vgamesx1 9 років тому +1

      +EdwardERS for most people? I thought most people had families, which means a little digging and if someone wanted access to my PC or whatever while I'm not around they could certainly find it... so that could be pretty bad, depending on what that password unlocks.
      Just use a password manager and come up with one really good password for it, I've managed to memorize a password over 12 characters long... Simply use it daily and you'll remember it within a week, it's not that hard man.. That or get one of those Yubikeys, I've only had a look at em so far but they seem pretty awesome and you can even use it to unlock your PC.

    • @vgamesx1
      @vgamesx1 9 років тому +1

      Vroom Vroomer I was refering to I dunno.. your bank, paypal, ebay/amazon accounts, etc... You know anything important? as if a child or teenager wouldn't at the very least be tempted to buy something if they gained access to anything like that...
      Why the fuck did you think I meant porn?

  • @DDT2005
    @DDT2005 9 років тому

    Better late than never that this finally arrived on UA-cam, but I still say that this should have been posted here in the first place.

  • @GenerationVicez
    @GenerationVicez 9 років тому +3

    Would love to see more cybersecurity related videos like this. Very informative video!

  • @marceli-wac
    @marceli-wac 9 років тому

    I literally loved the intro dialog beginning with the "If you want to see...", well played Luke!

  • @Pap9
    @Pap9 9 років тому +3

    talks about password protection then says:
    "a trick i use to come up with password is..."
    :D strill bro love luke

  • @VeselinMarkovic
    @VeselinMarkovic 9 років тому +1

    A good video, and one I liked. Luke's at his best when he isn't imitating Linus and doing his own thing instead. Thumbs up! 👍

  • @TheUltraseal
    @TheUltraseal 9 років тому +145

    Fun thing is that yahoo just noticed me that someone in north korea just entered my account.

    • @Bistinglolwut
      @Bistinglolwut 9 років тому +152

      maybe the glorious leader wants to know you better

    • @gbrahah
      @gbrahah 9 років тому +2

      same but it was from china, they probably have 100s of workers there just trying to get into emails on 2000 pcs

    • @photoshopdrummer
      @photoshopdrummer 9 років тому +4

      +GBrah its all just scripts that run and try till it gets in. not really workers.

    • @JesseDeya
      @JesseDeya 9 років тому +5

      +Trademark™
      Yahoo didn't just notice you. Words have meaning, please try harder.

    • @FrankieHiltz
      @FrankieHiltz 9 років тому +1

      +Trademark™ It said someone in Argentina tried accessing my email a couple days ago.
      Than I found out it was my brother trying to retrieve a certain password of mine while I was sleeping to upload a guitar tab to my account. He uses all that proxy/vpn, authenticators and such, so it tripped me out for a moment :b

  • @WilliamButcher4455
    @WilliamButcher4455 9 років тому

    grrrrrrr, why couldnt this video come out like 4 hours before, i had a whole ICT lesson about this today and it ansered EVERY question

  • @voEovove
    @voEovove 9 років тому +68

    This is why I don't use the internet, or any technology for that matter. I am currently writing this comment on my iStone tablet.

    • @Kaleb.R
      @Kaleb.R 6 років тому +4

      I wrote this comment in cave drawing before send it through iCave, which takes 3 years to translate into text on youtube.

  • @tranquil87
    @tranquil87 9 років тому

    Thanks for recommending Dashlane. I've been having issues with Lastpass not loading up anymore after starting Chrome, so I switched to this and it's working pretty well so far.

  • @dragonshardz
    @dragonshardz 9 років тому +4

    1Password isn't cloud-based, Luke. It, much like KeePass, has available Dropbox integration but doesn't store the actual database on a remote server. The password database (which is strongly encrypted) is stored locally. The primary differences between 1Password and KeePass are that 1Password has a more user-friendly UI but lacks Linux support while KeePass is a bit more utilitarian in the UI field but has a wider compatibility base.

  • @poloniumfist6059
    @poloniumfist6059 9 років тому

    Password manager guide series would be amazing!

    • @monday6740
      @monday6740 5 років тому

      Apart from the fact that password managers get broken into

  • @gerrit2107
    @gerrit2107 9 років тому +143

    Taran van Droogkloot and Taran van Eikel :D

    • @sybrand1996
      @sybrand1996 9 років тому +32

      the best dutch names:p

    • @RobKenis
      @RobKenis 9 років тому +6

      +Gerrit-Jan Bergwerf Dem Dutch translations :D

    • @cuddles.monster
      @cuddles.monster 9 років тому +7

      Taran Lulhond

    • @djsoundinfo
      @djsoundinfo 9 років тому +4

      Taran Klootviool :D
      Yeah dutch words

    • @kil98q
      @kil98q 9 років тому +5

      +dirk-jan raven Yay nederlandse woorden!

  • @anmxl_d
    @anmxl_d 9 років тому

    THAT INTRO OMG! THAT WAS HILARIOUS!

  • @Silveretta69
    @Silveretta69 9 років тому +55

    Guys I just won a new iPhone 6S and all I had to do was send a Nigerian prince my bank account details!

    • @seth2428
      @seth2428 9 років тому +2

      +Martin K wheres your SSN? (insert name here) The nigerian prince needs hat too

    • @Lambda_Ovine
      @Lambda_Ovine 9 років тому

      +Probably Jack Congratulation!

    • @SSDragon19
      @SSDragon19 9 років тому

      +Probably Jack gratz. but what are you going to do when the next iphone comes out in 6 months. sell the 6S, put the money in the bank and let the nigerian prince take it and give you the next iphone? good luck mate

  • @Aerox90
    @Aerox90 4 роки тому

    I made my own HARDWARE password manager 😊 It fits well on my keychain and can either show the password right on a small LCD display after decryption - or be plugged into USB and launch a webbrowser directly on its own storage (runs separately from the PC's browser) with the password automatically filled in/already logged in to the account due to cookies!
    Everything is backed up in 2 different ways as well, so I don't have to worry about loosing the keychain 😊 ...And nothing is stored on potentially untrustworthy third part cloud-servers! 😉👍

    • @Aerox90
      @Aerox90 3 роки тому

      @exios It's NOT like a "walk in the park" 😅 It took me like a year to finish this project... 😆 I had everything thougt out so I also believed it would be an easy task. But there where WAY more "roadblocks" on the way than I had expected! 😪 Especially because I wanted to avoid using ALL kinds of third party code libraries and instead do all of the programming myself!
      It's backed up to a micro-SD card on the device and I have also written a script on my computer that checks if the first/middle/-and last character, as well as the total lenght of the encrypted data on the password manager matches with a partial cache from the last time I had it plugged into my computer. If it does NOT match with the cache then it means something has changed, so then it automatically replaces the old backupfile on an external harddrive with the new and updated data 😉👍

    • @Aerox90
      @Aerox90 3 роки тому

      @exios Well, If you've got a really good memory - then you already have the most secure passwordmanager in existance! 😉

  • @EposVox
    @EposVox 9 років тому +6

    Great video.

  • @davidl5786
    @davidl5786 3 роки тому +1

    I use this method . I have an usb stick crypted with Veracrypt and inside the crypted memory of usb I have the password database crypted by KeePass . Every time I have to digit the password or see it I turn off the internet connection of the computer and copy and past the password in the site. The master password of Veracrypt and KeePass are saved in no digital device but they are in real life safe place. Inside home I use a second pc with no internet connection for open the database password. For mobility it's very simple , I use an otg cable for connect the usb to the smartphone and use two apps similar to Vera and KeePass. In total I have 3 copy backupn of this systems .

  • @AL_O0
    @AL_O0 9 років тому +31

    Techquickie: password security explained

    • @jordanjohnson714
      @jordanjohnson714 9 років тому +3

      I see your comments often. We must share some of the same interests.

    • @AL_O0
      @AL_O0 9 років тому +3

      +Jordan Johnson (Mighty Burger) my subscriptions are public if you want...

    • @jjws600
      @jjws600 9 років тому +2

      Most of your subscriptions, I have. Omfg

  • @canadianrocketman3475
    @canadianrocketman3475 4 роки тому

    I don't get why people dislike these videos, are they the ones hacking into peoples accounts? like... there giving you free ideas on how to protect your password

  • @WessonSnyder
    @WessonSnyder 9 років тому +31

    I litteraly changed most of my passwords after seeing this video
    I think most people did

    • @vaka4541
      @vaka4541 9 років тому

      +Toxicz I rarely change my passwords. Only accounts that actually matter are my Battle.net and Steam accounts and they have multiple step authentication. They also have different passwords than all the other accounts.

    • @fakedeltatime
      @fakedeltatime 9 років тому

      +Toxicz That'll probably be what I'll spend my short upcoming vacation on, tracking down all the places I have signed up to, trying to remember the passwords and making new ones.

    • @WessonSnyder
      @WessonSnyder 9 років тому

      ***** A long one...

    • @SilverBreath25
      @SilverBreath25 9 років тому

      +Vroom Vroomer I've done some hacking and the only way to save yourself is by not checking remember password. you can bypass steam guard with files.

    • @vaka4541
      @vaka4541 9 років тому +1

      Bernie Sanders 2016 Oh noo, my games. How can I live without them. How can I ever survive now that Bernie Sanders 2016 knows how to bypass multiple step authentication. Rest In Pieces me, a poor soul, a weak red lipped fish, living on the bottom of the ocean.

  • @polmes
    @polmes 9 років тому +1

    1password can also be used for local storage (and local Wi-Fi sync, which is very useful)

  • @SmartLifeEnthusiast
    @SmartLifeEnthusiast 9 років тому +16

    "I changed all my passwords to 'incorrect'. So whenever I forget it, it will tell me: Your password is incorrect".

  • @DarcroOnRs
    @DarcroOnRs 8 років тому

    I finally realised what the *putting right hand down to side for a second every now and then* thing is. Moving the slide on for an auto-cue/script type thing. Can't believe it took me so long to figure it out. I just thought it was a weird habit of Linus'.

  • @NeonYukon
    @NeonYukon 9 років тому +21

    What are you talking about? 69allday is a great password

    • @NeonYukon
      @NeonYukon 9 років тому +1

      .... that's totally not my password now, lmaojk

    • @Sizifus
      @Sizifus 9 років тому +1

      +EvilCatNip So what is it now? 69allnight?

    • @n0b0dy598
      @n0b0dy598 9 років тому

      +Ken Catus No its 69allweek XD

    • @Reedster49
      @Reedster49 9 років тому

      +EvilCatNip 69_4lyfe?

    • @SSDragon19
      @SSDragon19 9 років тому

      +Nathaniel Mina nah. its nonstop69alldayerrday

  • @hennied7236
    @hennied7236 9 років тому

    *lol* enjoyed the Dutch last names (droogkloot, eikel, etc.) in the first few minutes of the video :-)
    Greetings from the Netherlands

  • @epicDuftbaum
    @epicDuftbaum 9 років тому +80

    Why is physically writing down the password a bad idea?
    As long as somebody doesn´t break into my house, they are safe. Family members do not even know that I have something like that and I won´t lose the sheets of paper since they are all stored in one place for years now.
    Written down password cannot be stolen by some fancy hacking program. Using a password manager isn´t an option for me, I do not need it anyway and it can get decrypted too.
    If you have all your passwords stored in a program, good luck getting to them if you PC is dead...

    • @iDerekMC
      @iDerekMC 9 років тому +3

      +epicDuftbaum and what if somebody breaks into your house?

    • @epicDuftbaum
      @epicDuftbaum 9 років тому +70

      ***** Then he might as well steal my whole PC...

    • @DaanWaardenburg
      @DaanWaardenburg 9 років тому +3

      +epicDuftbaum Its not the PC that passwords will protect, its the information on it. With the proper security software and firmware computers without passwords are just a bunch of metals.

    • @deres9289
      @deres9289 9 років тому +2

      +iDerekMC what if he has hid it? like in a sofa. no1 will search there

    • @matthewchampagne6779
      @matthewchampagne6779 9 років тому +67

      I wrote down my passwords on a page of a Math notebook. if someone breaks in my house I don't think they broke in to do some studying.

  • @iammeandmyself
    @iammeandmyself 9 років тому

    Thank you for this, i have just changed my passwords and am now using two level authentication. Thanks again for another great video.

  • @oliviamay
    @oliviamay 9 років тому +2

    Every time someone smart talks about password security, I always wait for the xkcd references.
    Remember kids: correct horse battery staple.

  • @felixsus5196
    @felixsus5196 3 роки тому

    thanks, linus tech tips, for great and interesting content

  • @amusix8386
    @amusix8386 9 років тому +7

    Is it bad that I use the same password for everything?

    • @AstolfoGayming
      @AstolfoGayming 9 років тому

      +Amusix Probably.. But I do the same thing and have never been compromised. Just be ready to quickly change all your passwords if something happens

    • @Majora96
      @Majora96 9 років тому

      +Amusix It's okay to reuse a password for almost everything because there's shitloads of stuff out there and you could never remember a 1000 different passwords but I suggest having a unique password for the important stuff like bank password or main email password.

    • @onesimpleclik
      @onesimpleclik 9 років тому

      +Amusix I use the same password for everything. always have.

    • @Yemto
      @Yemto 9 років тому +2

      +Amusix I don't know how secure this is, but I used to setup my passwords like this .
      Like:
      UA-cam: siglfmdy34Tube
      Twitter: siglfmdy34Bird
      Deviantart: siglfmdy34DumbIcon
      P.S. Those examples have never been any password I have used, It's just as an example.

    • @alibobble
      @alibobble 9 років тому

      +Yemto With the use of number and capital letters too, I'd say that's a very secure and unpredictable way to pswd protect your accounts.

  • @krisb853
    @krisb853 9 років тому

    "Or with friends... I don't judge." I love you guys!

  • @classicrockonly
    @classicrockonly 9 років тому +3

    Never use cloud storage for passwords. Note: LastPass was compromised earlier this year. You also shouldn't be trusting proprietary software for password storage. You don't know what's happening to your passwords

  • @christopherweeks89
    @christopherweeks89 8 років тому

    I have a password that has four sections that I switch around whenever I make a new password and then I also have a fifth unique section for every password. It works very well for me

  • @swat67ify
    @swat67ify 9 років тому +35

    My password is over 30 characters long with capitals, letters, and jumbled words xD Takes a while to log in

    • @Villex93
      @Villex93 9 років тому +5

      +swat67ify No need to make it that difficult

    • @teun4620
      @teun4620 9 років тому +2

      +swat67ify How do you deal with websites where passwords can't be longer than X characters (Yes they exist)

    • @Badmuthaa
      @Badmuthaa 9 років тому

      how when there's a limit of 16 characters on Google/UA-cam?

    • @MattinatorHax
      @MattinatorHax 9 років тому +4

      +Teun Willems Run. Run away from them. Unless it's your bank, then you call up their IT security department and yell at them for using terrible security practices.

    • @swat67ify
      @swat67ify 9 років тому

      Teun Willems Moeyz69 I use only for email. Google doesn't have a limit?

  • @MrPartyWaffle
    @MrPartyWaffle 9 років тому

    These intros are getting really real...

  • @TechXSoftware
    @TechXSoftware 9 років тому +8

    So imagine you have 50 accounts, that means 50 passwords, you then need to remember 50 passwords?

    • @P1taJ
      @P1taJ 9 років тому

      +TechXSoftware If you want to be perfectly secure, yes

    • @MathieuBouvier
      @MathieuBouvier 9 років тому

      +TechXSoftware Pretty much. That's when a password manager comes in handy - only one password to remember to rule them all. It can be a pain sometimes in day-to-day usage, but worth it.

    • @TechXSoftware
      @TechXSoftware 9 років тому +3

      Mathieu Bouvier But that then goes against his 2 rules, 1) storing the password, 2) writing it down.

    • @antona4004
      @antona4004 9 років тому

      +TechXSoftware Just use the same passowrd on things you don't mind being hijacked, (actually think about if you mind before) and you only need a handful of unique passwords.

    • @MathieuBouvier
      @MathieuBouvier 9 років тому

      +TechXSoftware Passwords are (heavily) encoded in the password manager database ;-) Of course, it's a bit of a trade-of since, yes, that means you have all your psw in a file - actually, in several files, since you want to make copies of the database: the biggest threat with a password manager is accidentally lock yourself out of your own online accounts by losing the database :-))

  • @garagatza
    @garagatza 9 років тому

    This!
    Should really gain more views!!!

  • @Aiminsei27
    @Aiminsei27 9 років тому +3

    5 minutes ago?.. dam i here!

  • @TKIvanov
    @TKIvanov 9 років тому

    Dayum that wink came out perfect!

  • @KareezyG
    @KareezyG 9 років тому +5

    The problem is these websites with all these criteria for passwords.

  • @willhendrix86
    @willhendrix86 9 років тому

    The pass phrase is superior. You can even use concepts to help remember them. You can right down the concept as a reminder since someone would need to both know you very well and have the concept to crack it. An example of a concept is what I call topical favourites. So for example: Location - Car - Food, from this randomly I could have a password of dubaifordburger, sydneylancercheese or newyorknissancake. Both functional and comical making them easier to remember. 2-Factor authentication is based on a principle of both something you know coupled with something you have. So a password combined with a pin from an App, Text Message or RSA token makes this more viable. While someone could steal your phone or RSA token, chances are they won't have your password and vice versa. There is a TED talk on this exact topic if you want to know more.
    I need to point out this won't work everyone. Some developers for whatever reason limit password character length, eg. Password must be between 6 and 12 characters in length. While this would help prevent SQL injection attacks, it is overzealous as proper input validation would prevent this.

  • @noname-wx8qq
    @noname-wx8qq 9 років тому +46

    UA-cam actually blocks out your password if you post it, like this: My password is *******

    • @cartman1226
      @cartman1226 9 років тому +26

      +J Nichols deeznuts123

    • @WoahWoah378
      @WoahWoah378 9 років тому

      +J Nichols ********* Ha! Cool, didn't know that!

    • @Markgb3
      @Markgb3 9 років тому +1

      +J Nichols *******************************************************
      wow it works

    • @Mandragara
      @Mandragara 9 років тому

      +J Nichols ********
      amazin!

    • @TikiPC
      @TikiPC 9 років тому +63

      Hunter2

  • @Crazy_Finn
    @Crazy_Finn 9 років тому +1

    please make a video on negative and positive off does difrance password managers.. i would love a video like that. and bett others would to.

  • @TheWebstaff
    @TheWebstaff 9 років тому +4

    Why not write them down? its hard to hack paper?... and you'd have to have something somebody really wanted online for them to break in to your house / rob you to take your password book just to login to your online accounts?....
    but that's just my 2 cents..

  • @CustomNameHere
    @CustomNameHere 9 років тому

    The quality of the video production has improved quite noticeably. Well done to all concerned. :-)

  • @JamesKnowsSHIT
    @JamesKnowsSHIT 9 років тому +4

    first on a video but last to get laid

  • @ronnoc760
    @ronnoc760 9 років тому

    i fucking love the new style of comedy on this channel lol

  • @heinenrby7600
    @heinenrby7600 9 років тому +5

    The problem with the word combination or sentences is that many sites dont allow for this. Many sites require special characters AND numbers AND lower case AND upper case.
    a few sites have a minimum of 8 characters and a maximum of 14. Idiotic, but I cant force it to work.
    And now you have to remember which sites have what weird rules. So back to a lot of hard remembering again.

  • @bitcoin-livede
    @bitcoin-livede 9 років тому

    very important video, nice - good job!

  • @DasVERMiT
    @DasVERMiT 9 років тому +24

    hunter2

  • @Bokbind
    @Bokbind 9 років тому

    Love the shirt, man! Bastion is awesome!

  •  9 років тому +5

    Who the fuck is Aiden?

    • @deliriouscookie3107
      @deliriouscookie3107 9 років тому +1

      +Jay Anderson the guy from WatchDogs

    • @lol48639
      @lol48639 9 років тому

      +Jay Anderson NO ME, obvs...

    • @hpotter134
      @hpotter134 9 років тому

      +Jay Anderson at first i thought it was raiden and i was like u wot m8

  • @Bojangles4th
    @Bojangles4th 9 років тому

    4:44 AM, had a tad too much Mountain Dew and a Maple-frosted Doughnut (yay New England region), and what am I doing? Watching Linus Tech Tips of course.
    -I have weird habits.-
    _Also, RIP sleep schedule; I'll miss you._

  • @BustaChimes
    @BustaChimes 9 років тому +3

    Me and my friend use to write down our passwords with a custom book in skyrim and put it in our house.

    • @ModrunOfficial
      @ModrunOfficial 9 років тому +1

      +Zac Pompa (Red Actual) and then u lose ur skyrim file.

    • @BustaChimes
      @BustaChimes 9 років тому +1

      MoDRun yeah it was just a fun way man

  • @werbaali7638
    @werbaali7638 9 років тому

    Yubico just made a sale, thanks to you!

  • @AlienPball
    @AlienPball 9 років тому +4

    Wonder how many people tabbed out of this video to go and change their passwords. I know I did.

    • @Aaa-rb6dc
      @Aaa-rb6dc 9 років тому

      Wtf why?

    • @AlienPball
      @AlienPball 9 років тому +1

      Scentpie's friends are the only toys I need while I try to a eat a hot pocket with my skirt down Take a few minutes to figure out why someone might possibly want to change their passwords after watching this video.

  • @jabacoco
    @jabacoco 9 років тому

    I they should make a video about usual PC problem symptoms for each part of a system. Like "Usual symptoms of a failing Ram As fast as possible", " Usual symptoms of failing PSU as fast as possible" so on an so forth.

  • @LeoSkyro
    @LeoSkyro 9 років тому +9

    Oh yeah don't write your passwords down on a file that will remain on my desktop but DEFINITELY send them across the internet resting in the CLOUD. goddamit
    Also if your password is just words it WILL be broken by a brute force program

    • @NNOTM
      @NNOTM 9 років тому +2

      +leo sky I would hope that you don't actually send your passwords to them, but rather encrypted versions of them, that can only be decrypted with your master password. Also whether your passwords can be broken if they're only words really depends on the kinds of words you use and especially on how many words you use.

    • @Telogor
      @Telogor 9 років тому +4

      leo sky First, LastPass and other cloud-based password managers use heavy encryption that can't be brute-forced before the heat death of the universe. Second, read that XKCD. It briefly explains how a random combination of 4 common words is actually more secure against both humans and computers than what people usually believe is a good password.

    • @uzbekistanplaystaion4BIOScrek
      @uzbekistanplaystaion4BIOScrek 9 років тому

      +Telogor _ a lot of brute force programs will also use a dictionary/wordlist and try combining those, so writing a long password sentence with only lower case words from a dictionary could drastically lower the time it takes to brute force a passphrase like that, probably not even a day of computing. the xkcd is correct, assuming that the brute force attack will try random symbol combinations. most, however, do not work randomly; there's a certain predictability to common password phrases/combinations. personally, I'd advise to use long and moderately complex pass phrases. you can even write them down onto some paper to keep near your PC, which should be fairly safe as long as they're not easily visible by anyone just walking in.

    • @vaka4541
      @vaka4541 9 років тому +1

      Here's a great password: kumarreksituteskenteleentuvaisehkollaismaisekkuudellisenneskenteluttelemattomammuuksissansakaankopahan
      it's just one word tho.. ;)

    • @blamedagods
      @blamedagods 9 років тому

      +Vroom Vroomer
      that could take at least 10 fellas using backtrack 10 months to find.

  • @TGHstudio
    @TGHstudio 9 років тому

    Nice lighting and color

  • @Iistener
    @Iistener 9 років тому

    Dayum 1 AM upload.

  • @Awrethien
    @Awrethien 9 років тому

    Another good way Ive found is to use a passage from a book you like. Easy way to remind yourself of what the password is.

  • @dead588
    @dead588 9 років тому

    I have a pretty airtight method I think, I have 5 different passwords that I'll alternate between for every account I own. I have all of these memorised and if I require a hint for a password, the hint will normally be something like "password 1" which acts like a trigger, immediately telling me which of the 5 to use.

  • @DylanEdd_1
    @DylanEdd_1 9 років тому +1

    I personally would say that KeePassX is a pretty good open alternative to some of the desktop solutions for password management out there. Mainly because it's available for all of the major operating systems.

  • @jouteisama
    @jouteisama 9 років тому

    Great review! More people need to know this stuff!

  • @Call_MeJD
    @Call_MeJD 9 років тому

    I will set a goal to change one password a day until I feel I am good with all the sites. Thanks guys.

  • @dabigb1243
    @dabigb1243 7 років тому

    I used to use plmnkoijb as my pass. It's easy to remember HOW to type, but not easy to remember. Making mental patterns on how to type a pass can make it way easier to generate new ones and remember old ones.

  • @kcvriess
    @kcvriess 9 років тому

    Cool vid!
    Can you please make a comparison vid of different local and online password managers?

  • @DeltaF508
    @DeltaF508 9 років тому

    very informative. great video.

  • @yippy3000
    @yippy3000 9 років тому

    1Password is NOT cloud based, it is local. It does however, allow syncing by copying the vault file between computers (typically using Dropbox) or direct device to device WiFi syncing which has no cloud involved at all.

  • @danjessen
    @danjessen 9 років тому

    If the site you are creating a password for supports spaces. It is also great to make your password into a word or sentence and your normal password. Like for LinusTechTips forum it could be 'linustech ' and for Facebook it could be 'bookoffaces '. This way, you get a long password and also as password that you can remember!

  • @torjones1701
    @torjones1701 9 років тому

    Hey, I'd use passwords like "correct horse battery staple" except that many sites require varying case and numbers and non-alphanumeric characters for their passwords. Many sites also still limit the length of passwords to 10 characters, so using those non-alphanumeric characters are as good as we can get in many situations.

  • @Idlehampster
    @Idlehampster 9 років тому

    I first heard it with Linus, now I'm hearing Luke say it. Agayhnst.

  • @codeinject
    @codeinject 8 років тому

    love the usernames in this video xD

  • @robinrip3045
    @robinrip3045 9 років тому

    I don't use password managers. I just don't like them simply because of the fact I'm either storing passwords on a server owned by someone else. This just gives me chills as I don't know who is actually administrating the server or what security they have.
    I generally keep all my passwords different, and use a combination of two random easy to remeber passwords blended together in a pattern different on all passwords.
    If I could ever give any advice to anyone its simply that:
    1. Don't use any less than 16 characters.
    2. Use numbers and letters at least. Also put some 'RANDOMLY PLACED' symbols if any.
    3. Never store passwords on the internet such as cloud service or even lastpass.
    4. Use 2 step authentication on a 'SECURE' device, meaning encrypted or password protected or if possible fingerprint protected. Remember, your device (your phone) is a key. Keep it safe or never use it as a key.

  • @TheManInOz07
    @TheManInOz07 9 років тому

    I use KeePass for personal and work. Don't need to remember passwords or even see them. Auto generated based on several options, or manual entry. Auto paste and clipboard timeout.

  • @LooselyRigorous
    @LooselyRigorous 9 років тому

    1Password is not necessarily "cloud-based" like LastPass. You can happily turn off dropbox/icloud sync and sync Locally via WiFi. (Although I think at this time this is only supported with a Mac-iPhone combo)
    What I mean is that (although tedious) 1Password does not _require_ you to sync.

  • @definitelynotadj
    @definitelynotadj 9 років тому

    A video comparing the different 3rd party password systems would be great.

  • @HoryBP1
    @HoryBP1 9 років тому

    GOD DAMN THAT BASTION SHIRT!

  • @pueIIaaeterna
    @pueIIaaeterna 9 років тому

    3:34 Wait, is that a... Doctor Who reference??? On LinusTechTips??? Well, the old kitchen did have a TARDIS in the background... Still, I am now both surprised and full of admiration...

  • @omichelini
    @omichelini 9 років тому

    You should also talk about websites that set using special characters, numbers andcapital letters as a mandatory thing. Tips for memorizing, and all that. I'd say, make the first letter capital, just like you'd do to a name, add a number to that object (the tube), and switching an "s" for "$" should pretty much do it IMO.

  • @adamglass5714
    @adamglass5714 9 років тому

    I already implemented the password suggestion you mentioned, wanted to find out if you were correct and have a video reference. Btw, this doesn't work 100% (password type) since some websites/games seem to get into the habit of requiring short passwords and numbers/symbols in the password. They need to take a look at this video and remove those requirements, lowers my possible security due to this.

  • @SnoreProtection
    @SnoreProtection 9 років тому +1

    Pls stop telling me to like the video to see X video, you're doing the video already. I like the damn video regardless.

  • @JebBaxley
    @JebBaxley 9 років тому

    nice video - hope you do more security stuff, but some reviews of security options that are out there would be pretty cool as well!
    Also, where can we recommend tech to be reviewed? couldn't find it on the forums.

  • @yumri4
    @yumri4 9 років тому

    the best one is a combination of numbers, upper case letters, lower case letters and symbols but if supported also alt+### combinations IF SUPPORTED some and probably most sites don't support them for a password nor a username

  • @SniperNinja115
    @SniperNinja115 9 років тому

    Thanks for the tips.

  • @phoneindustrydesign
    @phoneindustrydesign 9 років тому

    that video about hiding videos and pictures we don t want anyone to see would be useful! :D

  • @Stewdill51
    @Stewdill51 9 років тому +1

    You have three parts to security, confidentiality, integrity, and availability. As you increase one of these you decrease the other two. Just something to think about

  • @aBoogivogi
    @aBoogivogi 9 років тому

    I usually use the lyrics to a random song and replace one letter with a number. That way if I forget my password I can always listen to the song ;)

  • @UniCrafter
    @UniCrafter 9 років тому

    I got a bunch of great password design info off an antvenom vid. It's easier for a computer to crack a 15 digit long password with random letters, numbers and symbols than it is for it to hack a 20 letter long one with only words. Next time you make a password, make sure it's long and easier to remember, like Luke said.

  • @5L0TH
    @5L0TH 9 років тому

    Luke please do a video on the password managers. also the thing you mentioned at the start ;)

  • @psygn0sis
    @psygn0sis 9 років тому

    You should mention that using lower-case, upper-case, and numbers all within your "long password" will give you the most security.

  • @nictheperson6709
    @nictheperson6709 8 років тому +1

    One thing I'd like to point out that I do, is when recording your password, don't enter the correct password, enter it inverted, or with a missing or added letter or something like that. Just so long as its easy enough to remember.

  • @1122334455510
    @1122334455510 9 років тому

    i love the background