Why are we recommended to have at least 8 characters, and not 6 or 7 etc.? and the different set of character?. I only know that the longer the password is, the harder it is for brute force attack to take place. But why specifically 8 characters
Asked
Active
Viewed 821 times
1 Answers
0
You're right to state that password length recommendation is usually directly related to how hard it is to bruteforce attack it. When you combine this with the understanding that sophistication of attacks as well as computing power are increasing, it should follow that at some point in the past, based on computing power available, 8 characters was the "right" recommendation, and prior to this it could have been 6 or 7. Neither are the right recommendation today.
As computing power increases and sophistication of attacks increases, recommended password lengths will increase as well, to a point where it isn't feasible to use passwords which are any longer.
HackneyB
- 319
- 1
- 6
cwm thrash hudsUcker tangerine Betelgeuse anthrAx r!pplemight be a good password today - but it doesn't do much good if your passwords are stored as MD5 hashes, because they're only 128 bits, and even if you count just 3 bits per char, that's 171. – Ed Grimm Jan 28 '19 at 00:17