Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If I had to come up with a new long password every three months I'd do what undoubtedly countless other people would do in the same situation: I'd write down my password somewhere nearby the computer so I could look it up when I needed it.

Overly onerous password requirements reach a point where they no longer increase security, they just shift vulnerability to a new area. They also piss off users.



If I had to change my password every three months, I'd do something even simpler: I'd stop using the service.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: