On Mon, Apr 25, 2011 at 12:53 PM, Aaron Toponce <aaron.topo...@gmail.com> wrote:
> On 4/16/2011 11:43 PM, Shane Hathaway wrote:
>> Would you actually advise the public to write down their passwords,
>> knowing that people leave their wallets or purses unattended quite
>> frequently?  Stealing a written password requires only a glance or a
>> camera.  There could easily be no evidence whatsoever of the password
>> theft.  Written passwords are not at all equivalent to physical security
>> tokens.
>
> I'm actually surprised that no one has mentioned this, so I'll just drop
> this here:
>
> https://passwordcard.org
>
> Yes, there is nothing wrong with writing your passwords down, and
> keeping it in your wallet or purse. It's how you write them that makes
> all the difference in the world.

Correct me if I'm wrong, but if your passwordcard is stolen it yields
a rather small dictionary for an attack on your accounts.
Better than plain text, but still not very secure--enough so that I'm
not sure it's worth it.

/*
PLUG: http://plug.org, #utah on irc.freenode.net
Unsubscribe: http://plug.org/mailman/options/plug
Don't fear the penguin.
*/

Reply via email to