Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> and as a result are actually causing many security problems.

That's completely contradictory to what the NIST guidelines state:

> The most notable form of these is composition rules, which require the user to choose passwords constructed using a mix of character types, such as at least one digit, uppercase letter, and symbol. However, analyses of breached password databases reveal that the benefit of such rules is not nearly as significant as initially thought [Policies], although the impact on usability and memorability is severe.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: