What is the reliability of this password creation method?

  • Thread starter Thread starter Gomar
  • Start date Start date
Join the discussion
Registration is free. Ask a follow-up in this thread, or start your own.
4 replies · 2K views
Gomar
Messages
20
Reaction score
0
https://www.grc.com/haystack.htm

enter a random 20 character pw made of only lower case letters.
(However, x100 as I am using 1T not 100T pws/sec; thus:
65.90 thousand centuries x100 = 6590 thousand centuries)

answer: 659,000,000years.

is that correct?
 
Physics news on Phys.org
Gomar said:
https://www.grc.com/haystack.htm

enter a random 20 character pw made of only lower case letters.
(However, x100 as I am using 1T not 100T pws/sec; thus:
65.90 thousand centuries x100 = 6590 thousand centuries)

answer: 659,000,000years.

is that correct?
I guess, if I understand what you're asking. 65,900 X 100 centuries = 6,590,000 centuries = 659,000,000 years

Note: I didn't visit the site you showed, so I don't know what your question has to do with anything.
 
20725274851017785518433805270 looks about right ...

at 1 Tpws/s ... maybe 656,744,329.448937 yrs is a slightly better rough guess?

20725274851017785518433805270 / 1 T / (60 * 60 * 24 * 365.25)
 
NemoReally said:
20725274851017785518433805270 looks about right ...

at 1 Tpws/s ... maybe 656,744,329.448937 yrs is a slightly better rough guess?

20725274851017785518433805270 / 1 T / (60 * 60 * 24 * 365.25)


Thanks for atleast visiting the site prior to posting an answer.
Yes, you are correct. Even using 100T pws/sec (their speed), I could rest assured spooks won't break my encrypted files in atleast 6m years even if using only lower case letters.
 
Gomar said:
Thanks for atleast visiting the site prior to posting an answer.
Yes, you are correct. Even using 100T pws/sec (their speed), I could rest assured spooks won't break my encrypted files in atleast 6m years even if using only lower case letters.

Ah, well, I think the site does mention (I only glanced at it) that a cracking algorithm would try certain combinations first as being more likely (people have to remember them and many password generating algorithms have a filter that restricts the passwords to "human memorable / speakable" passwords). The time given is that needed to test all the combinations. If the cracking algorithm just rolls its sleeves up, starts at "aaaaa..." and your password happens to be "aaaaa..." then your secret stash of pi porn will become viral in no time (well, at least in the maths community :cool:)