Score:0

How can I benchmark password strength?

fr flag

My idea was to balance password entropy and memorability.

Is there some tool I can use to benchmark generated passwords?

Would a state of the art password cracking tool measuring the time to crack a given password be a good idea?

Fleeep avatar
br flag
perhaps these help you: https://security.stackexchange.com/questions/257611/why-use-random-characters-in-passwords https://security.stackexchange.com/questions/662/what-is-your-way-to-create-good-passwords-that-can-actually-be-remembered
Swashbuckler avatar
mc flag
Don't look at just entropy, there's password topologies to consider as well, see https://github.com/JohannesBuchner/PasswordTopologies
kr flag
@Swashbuckler: Your comment is wrong, I am sorry to say that. What you name "topologies" are just rules that some users / companies apply. Any rule means more information about the system, which means less entropy. Means, when you are talking about "topologies" you are talking about reducing entropy compared to a random password generator.
Maarten Bodewes avatar
in flag
Closed for now, if the duplicate Q doesn't satisfy your needs feel free to post a *more specific question*, indicating what is missing for you.
mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.