Of the many, many, many bad things about passwords, you know what the worst is? Password rules.
Let this pledge be duly noted on the permanent record of the Internet. I don’t know if there’s an afterlife, but I’ll be finding out soon enough, and I plan
Perhaps you've seen this recent XKCD about password choice?
It prompted a spirited debate – even on our very own Security Stack Exchange – about the merits of the argument presented there. Now, to be clear, I'm completely on Randall's side here; I'm all
Microsoft security guru Robert Hensing hit a home run his first time at bat with
his very first blog post
[http://blogs.technet.com/robert_hensing/archive/2004/07/28/199610.aspx]. In it,
he advocates that passwords, as we traditionally think of them, should not be
used:
> So