<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://msmvps.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Xato : Passwords</title><link>http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx</link><description>Tags: Passwords</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>Multi-Factor Authentication vs Multi-Single Factor Authentication</title><link>http://msmvps.com/blogs/xato/archive/2007/05/09/multi-factor-authentication-vs-multi-single-factor-authentication.aspx</link><pubDate>Wed, 09 May 2007 15:35:43 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:895996</guid><dc:creator>MB's Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=895996</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2007/05/09/multi-factor-authentication-vs-multi-single-factor-authentication.aspx#comments</comments><description>Sprites mods has an interesting article about hacking the protection of a hardware authentication device: http://www.spritesmods.com/?art=secustick What&amp;#8217;s interesting about this is that it shows how easy it is to feel like a hardware device is providing...(&lt;a href="http://msmvps.com/blogs/xato/archive/2007/05/09/multi-factor-authentication-vs-multi-single-factor-authentication.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=895996" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Windows+Security/default.aspx">Windows Security</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Hacking/default.aspx">Hacking</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Security+Policy/default.aspx">Security Policy</category><category domain="http://msmvps.com/blogs/xato/archive/tags/computer_2B00_security/default.aspx">computer+security</category><category domain="http://msmvps.com/blogs/xato/archive/tags/smart+card/default.aspx">smart card</category><category domain="http://msmvps.com/blogs/xato/archive/tags/hardware+device/default.aspx">hardware device</category><category domain="http://msmvps.com/blogs/xato/archive/tags/security+controls/default.aspx">security controls</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Cryptography/default.aspx">Cryptography</category><category domain="http://msmvps.com/blogs/xato/archive/tags/authentication+device/default.aspx">authentication device</category></item><item><title>Online Password Checker - How Common is Your Password?</title><link>http://msmvps.com/blogs/xato/archive/2007/05/09/online-password-checker-how-common-is-your-password.aspx</link><pubDate>Wed, 09 May 2007 14:01:48 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:895850</guid><dc:creator>MB's Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=895850</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2007/05/09/online-password-checker-how-common-is-your-password.aspx#comments</comments><description>Here&amp;#8217;s a password strength tester, and probably one of the most effective I have seen. Just enter your password in the text box and click on the search button. If you get no results, chances are your password is pretty good.
I think many of you...(&lt;a href="http://msmvps.com/blogs/xato/archive/2007/05/09/online-password-checker-how-common-is-your-password.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=895850" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Windows+Security/default.aspx">Windows Security</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category><category domain="http://msmvps.com/blogs/xato/archive/tags/security/default.aspx">security</category></item><item><title>How to Guess an Admin’s Password Without Them Knowing You Are Trying</title><link>http://msmvps.com/blogs/xato/archive/2007/03/01/how-to-guess-an-admin-s-password-without-them-knowing-you-are-trying.aspx</link><pubDate>Fri, 02 Mar 2007 04:30:38 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:888678</guid><dc:creator>MB's Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=888678</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2007/03/01/how-to-guess-an-admin-s-password-without-them-knowing-you-are-trying.aspx#comments</comments><description>Explains an old trick on how to guess someone else&amp;#39;s password without anything getting logged in the domain controller&amp;#39;s event logs Read More......(&lt;a href="http://msmvps.com/blogs/xato/archive/2007/03/01/how-to-guess-an-admin-s-password-without-them-knowing-you-are-trying.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=888678" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/General/default.aspx">General</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Windows+Security/default.aspx">Windows Security</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Security+Policy/default.aspx">Security Policy</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Hardening/default.aspx">Hardening</category></item><item><title>Why my password’s better than Y0ur P@$$word</title><link>http://msmvps.com/blogs/xato/archive/2007/02/15/why-my-password-s-better-than-y0ur-p-word.aspx</link><pubDate>Thu, 15 Feb 2007 19:00:32 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1564345</guid><dc:creator>MBs Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=1564345</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2007/02/15/why-my-password-s-better-than-y0ur-p-word.aspx#comments</comments><description>http://www.nurs.co.uk/news/specials/cms/1171535504212694732419_1.htm Read More......(&lt;a href="http://msmvps.com/blogs/xato/archive/2007/02/15/why-my-password-s-better-than-y0ur-p-word.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1564345" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category></item><item><title>New Passwords Feed</title><link>http://msmvps.com/blogs/xato/archive/2007/02/09/new-passwords-feed.aspx</link><pubDate>Fri, 09 Feb 2007 20:17:54 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1564348</guid><dc:creator>MBs Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=1564348</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2007/02/09/new-passwords-feed.aspx#comments</comments><description>I was playing around with the cool new Yahoo! Pipes site and built myself a feed on password topics. I&amp;#8217;m sure I will be tweaking it some as I learn how to use pipes, but I thought I&amp;#8217;d pass my pipe around to others who are interested in passwords...(&lt;a href="http://msmvps.com/blogs/xato/archive/2007/02/09/new-passwords-feed.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1564348" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category></item><item><title>Pafwert: Smarter Passwords</title><link>http://msmvps.com/blogs/xato/archive/2007/01/30/pafwert-smarter-passwords.aspx</link><pubDate>Wed, 31 Jan 2007 04:30:35 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1564356</guid><dc:creator>MBs Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=1564356</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2007/01/30/pafwert-smarter-passwords.aspx#comments</comments><description>Pafwert is an unique free tool to help you to select strong passwords that are easy to remember. Read More......(&lt;a href="http://msmvps.com/blogs/xato/archive/2007/01/30/pafwert-smarter-passwords.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1564356" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Windows+Security/default.aspx">Windows Security</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Privacy/default.aspx">Privacy</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Application+Security/default.aspx">Application Security</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Tools/default.aspx">Tools</category></item><item><title>Dilbert’s Password Recover Service for Morons</title><link>http://msmvps.com/blogs/xato/archive/2007/01/17/dilbert-s-password-recover-service-for-morons.aspx</link><pubDate>Wed, 17 Jan 2007 18:32:26 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1564359</guid><dc:creator>MBs Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=1564359</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2007/01/17/dilbert-s-password-recover-service-for-morons.aspx#comments</comments><description>See it here. Read More......(&lt;a href="http://msmvps.com/blogs/xato/archive/2007/01/17/dilbert-s-password-recover-service-for-morons.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1564359" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category></item><item><title>Long passwords are strong passwords</title><link>http://msmvps.com/blogs/xato/archive/2007/01/15/long-passwords-are-strong-passwords.aspx</link><pubDate>Mon, 15 Jan 2007 19:01:17 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1564360</guid><dc:creator>MBs Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=1564360</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2007/01/15/long-passwords-are-strong-passwords.aspx#comments</comments><description>I noticed that Schneier wrote a bit on choosing passwords and gets into some detail on how to secure a password based on some of the techniques used to crack passwords. His specific advice is: &amp;#8220;&amp;#8230;if you want your password to be hard to guess...(&lt;a href="http://msmvps.com/blogs/xato/archive/2007/01/15/long-passwords-are-strong-passwords.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1564360" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category></item><item><title>Passwords: First Letters</title><link>http://msmvps.com/blogs/xato/archive/2007/01/15/passwords-first-letters.aspx</link><pubDate>Mon, 15 Jan 2007 18:00:30 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1564361</guid><dc:creator>MBs Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=1564361</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2007/01/15/passwords-first-letters.aspx#comments</comments><description>I recently did an analysis of my password list to see which letters users most commonly used as the first password character. To put it into perspective, I also ran the same statistics on a wordlist of 250,000 English words. The results were not quite...(&lt;a href="http://msmvps.com/blogs/xato/archive/2007/01/15/passwords-first-letters.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1564361" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category></item><item><title>Password Trivia: Uppercase Letters</title><link>http://msmvps.com/blogs/xato/archive/2006/12/28/password-trivia-uppercase-letters.aspx</link><pubDate>Fri, 29 Dec 2006 02:49:02 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1564365</guid><dc:creator>MBs Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=1564365</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2006/12/28/password-trivia-uppercase-letters.aspx#comments</comments><description>In my last post I mentioned that few passwords contain uppercase letters. I also did some further study to see exactly how people use uppercase letters in passwords. Read More......(&lt;a href="http://msmvps.com/blogs/xato/archive/2006/12/28/password-trivia-uppercase-letters.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1564365" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category></item><item><title>Password Trivia: Character Sets</title><link>http://msmvps.com/blogs/xato/archive/2006/12/28/password-trivia-character-sets.aspx</link><pubDate>Thu, 28 Dec 2006 19:26:08 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1564366</guid><dc:creator>MBs Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=1564366</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2006/12/28/password-trivia-character-sets.aspx#comments</comments><description>I thought I would start sharing some of the statistics I have gathered over the last five years researching passwords. One area I found interesting was the use of character sets. I have long said that password length is the single most important factor...(&lt;a href="http://msmvps.com/blogs/xato/archive/2006/12/28/password-trivia-character-sets.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1564366" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category></item><item><title>Perfect Passwords Book!</title><link>http://msmvps.com/blogs/xato/archive/2006/03/16/perfect-passwords-book.aspx</link><pubDate>Thu, 16 Mar 2006 22:07:23 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1564376</guid><dc:creator>MBs Windows Security</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/xato/rsscomments.aspx?PostID=1564376</wfw:commentRss><comments>http://msmvps.com/blogs/xato/archive/2006/03/16/perfect-passwords-book.aspx#comments</comments><description>I finally finished my Perfect Passwords book. In this book I attack much of the conventional wisdom about password policies and present new techniques for building strong passwords. For example, I think that passwords as a technology aren&amp;#8217;t obsolete...(&lt;a href="http://msmvps.com/blogs/xato/archive/2006/03/16/perfect-passwords-book.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1564376" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/xato/archive/tags/Passwords/default.aspx">Passwords</category><category domain="http://msmvps.com/blogs/xato/archive/tags/Security+Policy/default.aspx">Security Policy</category></item></channel></rss>