Einträge über Passwörter

Erzwungener Passwortwechsel am Bahnsteig durch Eezy-NRW-App

Im ungünstigen Moment erzwang die Eezy-NRW-App (für Fahrkarten) einen Passwortwechsel: Am Bahnsteig, als ich in die Bahn einsteigen wollte. Auf eine schlecht gelaunte E-Mail bekam ich eine wohlwollende Antwort mit einer stichhaltigen Erklärung: Schutz nach einem Hack bei einem anderen Verkehrsverbund. Ich bin tatsächlich versöhnt.

Weiterlesen…

Password Guideline Nonsense

My company has solid security policies which seem to be oriented at best practices. And I am very glad that they don't enforce nonsense policies that would actually weaken the passwords that users choose. That of course isn't the case with every company. There is one particularly arcane case. They have these rules for passwords:

Weiterlesen…

Bad Password Practices

Every now and then I create an account on a new website. Since numerous websites get breached, I choose a unique password for each website. All those are stored in a password manager. If you want to have a feeling for the number of breaches, look at Have I Been Pwned. Those are only breaches which became public, there are probably many unreported cases for each public one.

Weiterlesen…