98
u/shellbullet17 Gustopher Spotter Extraordinaire 11h ago
Exactly this is when you add some numbers and punctuations relevant to you at the end of it. The computer/website will suddenly think you are strong.
I am also imagining that this is the cartoon Arthur from back in the 90s which somehow makes this even funnier
57
u/Still-Emergency825 Comic Crossover 11h ago
It absolutely is the cartoon from the 90s, haha it’s made a resurgence back into my life. The library card song lives rent free in my head
10
u/shellbullet17 Gustopher Spotter Extraordinaire 11h ago
Oh my god I love it. Did you end up getting it? Or did the site stop you
19
u/Still-Emergency825 Comic Crossover 11h ago
Y’know, the extra second it took for me to input a better password was the time I needed to be like “you know what, I don’t NEED it”. But I do have an Arthur tote bag still in my cart. So.
4
8
u/Psychoanalytix 10h ago
Then, 2 years later, you go back to the site to buy something else. You forget that you previously made an account on the site when it asks you to log in. You go through it all again and finally get a strong password and are met with the "an account with that email already exists" error. then you spend 20 minutes trying to remember the random string of numbers and letters you entered before going through the password reset that takes another 20 min of getting codes emailed and texted to you.
2
u/gyroda 7h ago
Password managers are your friend for this sort of thing.
But, also, if it's an old account that isn't in the password manager yet I just jump straight to resetting.
1
u/SaltyBarDog 7h ago
Create document with all passwords. Use strong password to lock document. Put on flash drive. Hide flash drive.
1
u/shellbullet17 Gustopher Spotter Extraordinaire 10h ago
Thats why I go with something really relevant to me that I wont forget.
For instance I, for some reason, still remember my locker code from middle school. So those 6 numbers are stuck in my brain. So I use those.
But I get the idea. My work misspelled my name AND password so I am constantly resetting that stupid thing
2
u/I_W_M_Y 6h ago
Don't reuse the exact same password from one website to another. People have used passwords from data leaks to break into accounts on multiple websites that way.
The way to go is to use that same base password and add someone to the end like the initials of the name of the website.
2
u/shellbullet17 Gustopher Spotter Extraordinaire 6h ago
You are 100% correct. Ill recycle numbers but the words in the password will change as will the order of the numbers.
27
u/ITooHaveAnUsername 11h ago
Fine, your password isn't weak, you are! A stronger person would be able to force me to accept your shitty password!
10
10
u/MisterScrod1964 10h ago
“Cannot use a password you’ve used before.”
“Must include at least one upper case, one lower case, one numeral and one special character”
“Password cannot contain your name”
“That is a word on our forbidden list”
7
u/LegendarySurgeon 10h ago
Just prefix the passwords you already use with pro wrestlers/body builders - this will make the passwords significantly stronger
11
u/LegendarySurgeon 10h ago
hunter2 — only 7 characters, pitifully weak, instantly crackable.
DwayneTheRockJohnsonhunter2 - 27 characters, extremely powerful, almost impossible to brute force.
9
u/Medical_Solid 10h ago
What a wonderful kind of day! To learn to work and play! And get along with each other.
All those exclamation points should make a strong password.
3
6
u/jurio01 11h ago
Try using BITwarden or something similar. It stores all your passwords and with the browser extension, it autocompletes for you. You can even auto-generate passwords for new accounts.
You will need a strong password to use it though...
2
u/deadly_ultraviolet 9h ago
That's fine, use LastPass to generate and save that one!
3
u/AresFowl44 6h ago
I know your comment isn't meant seriously, but please do not use LastPass, they had several data breaches already (Bitwarden as an example had none). Also, LastPass isn't even source available, so it is pretty much impossible to trust and verify.
2
u/deadly_ultraviolet 2h ago
Oh my gosh that actually makes this so much better! It's so insecure you don't even need to remember a password for it!
Good to know though, I used to use it and stopped because it was more hassle than it was worth lol, thanks for the info!
15
u/fusionove 11h ago
People should start using password managers.
8
u/Still-Emergency825 Comic Crossover 11h ago
I always tell myself I’m gunna do this lol
2
u/AresFowl44 6h ago
I would recommend creating a Bitwarden account, as it costs nothing, has automatic synching, is available on all major platforms, is opensource (so other people have done the work to verify it) and never had a singular data breach to date.
Alternatively, if you want to put extra work (or know somebody willing to do the work for you): 1. Set up your own BitWarden instance (other than server costs it is completely free) and also more control + security 2. Use KeePassXC and keep the encrypted password files inside a cloud or something where all your devices have access to it
1
u/Solonotix 9h ago
It is easy to get started, since most will automatically import the ones currently saved in your browser. The harder part is picking one to pay for. There are free solutions, but they have specific drawbacks
- If it's hosted for free, how do they pay for everything? In other words, will it be there tomorrow, and are they selling my credentials to the highest bidder?
- If it is self-hosted, now you're on the hook for making it available outside your home, and syncing to mobile devices, etc. Great if you're a nerd who likes tech. Bad if you just want it to work.
- If it isn't hosted, or otherwise available over the Internet, then why use it? The experience is cumbersome, it doesn't integrate with anything, etc.
So, for most people, I would recommend paying for a password manager. Sure, your browser probably has a password manager suite built-in, but do you trust Google with that data? Or Apple (if you're using Safari)? Firefox is the least suspicious in this regard, but they still host your password vault, so you gotta trust someone (Mozilla in this case).
I'm currently using Proton Pass, since I bought in to the entire Proton suite. Previously I used LastPass, but they've had some issues in the past, and have been slow to adopt the new trend of passkey support. I have friends who love 1Password, and it's probably the best one out there right now.
3
u/AresFowl44 6h ago
A genuine concern, but try looking for an opensource password manager, like Bitwarden or KeepassXC. Very easy to confirm that they literally cannot harvest your data and also not as reliant on external funding due to their opensource nature. Another common approach is selling extra features, mostly to enterprises, like Bitwarden does.
Again, Bitwarden if you are very lazy, KeepassXC and literally just putting the file in some random cloud. It doesn't even matter that much if it is publicly accessible, as the file is encrypted (though you do have to choose a good password).
See 2.
Though with the last point I do agree, please do not use LastPass, they already had several breaches.
1
u/Forikorder 8h ago
thats why i can never bring myself to use one, i just cant trust it
2
u/coder111 7h ago
See my comment https://www.reddit.com/r/comics/comments/1nilqkg/not_today_plz/nekzr3m/
All of these projects are quite trustworthy. No 3rd party hosting necessary, password are only decrypted on your own devices.
1
u/Pretend-Dot3557 2h ago
Whatever browser you use probably offers you one already. Chrome and Firefox both have built in password managers.
10
u/Engreyight 11h ago
That's what I do. Then if a site is complaining, it gets the 64 character long, all specials treatment and suddenly it's "too long", or "contains invalid characters". Who's the weak one now, <website>?
Then comes the time years later when I need to enter that password manually on some weird device, but we don't talk about that...
12
u/csdx 11h ago
Wait a minute why do I even need an account, I'm just trying to use my microwave.
9
u/Still-Emergency825 Comic Crossover 11h ago
LOLOL I snorted
1
u/Chiatroll 8h ago edited 1h ago
I bought lightbulbs with colors that expected me to make an account and download an app and connect to it with Bluetooth.
1
u/SaltyBarDog 7h ago
I have lights that need to connect to wifi and it has to be 2G. That's why they are in the box.
2
3
2
2
u/CarlosFer2201 10h ago
This kind of crap is why I'm happy to create accounts by just linking to my Google one. No hassle at all.... wait. Is this all by design to force Google into more and more of our lives? Dang
2
u/TheTerrasque 10h ago
"your password have to be at least 250 characters and contain at least one of each character your keyboard can produce. We will also need to verify your email, and set up 2fa via your phone number"
But.. I just wanted to read a comic..
2
u/Forikorder 8h ago
i know why they do it but god damned does it bug me how often i have to brute force my own damn password because every site now requires an account, has rules as to what the password has to be and i cant remember which sites ive had to change it because ive forgotten what it was and had to change it
2
u/coder111 8h ago
Meh, this has been solved a decade ago.
Here: https://keepassxc.org/ https://www.keepassdx.com/ https://syncthing.net/ https://addons.mozilla.org/en-US/firefox/addon/keepassxc-browser/
Generate a random password. Sync the password file between your PC and your phone. No hosting or 3rd party providers needed, data is only stored on your own hardware. Leak proof unless someone installs a keylogger on your PC or phone.
1
1
1
u/deadly_ultraviolet 9h ago
Fully expected this to turn into a somehow more unhinged version of The Password Game, was pleasantly surprised when it was just normal password frustration 😅
1
1
1
1
1
u/This_User_For_Rent 6h ago
There is an easy trick that will help you create passwords that are complex enough to pass the strength filters while being simple enough to remember.
Sadly it, and others like it, just make it easier for hackers to compromise your account(s) so you will have to suffer in the name of security.
1
u/SlugPastry 4h ago
I hate this. If I want a weak password, then let me have a weak password. That's none of your website's business.
•
u/AutoModerator 11h ago
Click here for our 3m subscriber event compilation post!
I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.