tag:blogger.com,1999:blog-18157064.post9162137437628003151..comments2024-03-18T02:14:57.204-07:00Comments on Google Operating System: SuperGenPass - Simple Password GeneratorAlex Chituhttp://www.blogger.com/profile/02618542750965508582noreply@blogger.comBlogger8125tag:blogger.com,1999:blog-18157064.post-74926289254724418152009-10-08T13:12:59.181-07:002009-10-08T13:12:59.181-07:00SuperGenPass has a serious security flaw when used...SuperGenPass has a serious security flaw when used as a bookmarklet.<br />http://akibjorklund.com/files/2009/10/supergenpass-vulnerability-demo.htmlAnonymousnoreply@blogger.comtag:blogger.com,1999:blog-18157064.post-6958682939205567772007-12-06T07:26:00.000-08:002007-12-06T07:26:00.000-08:00This is vulnerable to brute force dictionary attac...This is vulnerable to brute force dictionary attack. If anyone had access to one of your generated password (like so many admins might), they could find out your master password (if it wasn't a random combination of letters and digits). So don't use your dog's name as a master password.Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-18157064.post-56197905962378133362007-11-09T06:39:00.000-08:002007-11-09T06:39:00.000-08:00The problem with standalone programs (as I;ve just...The problem with standalone programs (as I;ve just discovered which is why I'm looking at this) is that they're not platform independent. My WM6 smartphone won't run the password generator I've been using for years - it's generated dozens of passwords I use every day.<BR/><BR/>Now I'm going to have to switch but I only want to do it once, so making it browser based is a reasonably sure way of achieving that independence, even if I switch to Linux for the desktop (which is not unlikely).Manek Dubashhttps://www.blogger.com/profile/11211316252880143191noreply@blogger.comtag:blogger.com,1999:blog-18157064.post-19630399164459659432007-03-29T15:00:00.000-07:002007-03-29T15:00:00.000-07:00Why not just use a password manager?Keeps your pas...Why not just use a password manager?<BR/><BR/>Keeps your passwords safe, organized and accesible 24/7. Most have a password generator incorporated too if you want one.<BR/><BR/>Mine: https://www.passpack.com<BR/><BR/>There are others too. Shop around.Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-18157064.post-21829273667779780882007-03-06T09:51:00.000-08:002007-03-06T09:51:00.000-08:00There is a similar script for the greasemonkey fir...There is a similar script for the greasemonkey firefox extension called "password composer" that I have been using for around a year.Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-18157064.post-90011473641996675432007-03-06T07:35:00.000-08:002007-03-06T07:35:00.000-08:00Your quote:"And, best of all, you can use a single...Your quote:<BR/><BR/>"And, best of all, you can use a single password for all the sites that need one."<BR/><BR/>I wouldn't do that. I am using the predecessor of SuperGenPass as well, still I don't use it for _really_ important stuff like e-banking.<BR/><BR/>In the unlikely case that your master password gets detected (e.g. by a keyboard sniffing trojan on a compromised computer) - then all of your passwords are known. That small risk is acceptable for all my throwaway and social media accounts, but not for the critical stuff, for which I use a separate password. (note: this also implies that I don't access that really important stuff on machines that I don't trust, e.g. in internet cafés...).Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-18157064.post-69546517357992781342007-03-04T12:57:00.000-08:002007-03-04T12:57:00.000-08:00Thanks for the great find. Also this bookmarklet c...Thanks for the great find. Also this bookmarklet can be stored in Google Bookmarks and we can access it anywhere.Chrishttps://www.blogger.com/profile/12219824318025309088noreply@blogger.comtag:blogger.com,1999:blog-18157064.post-33667049876945999702007-03-04T12:16:00.000-08:002007-03-04T12:16:00.000-08:00Try PwdHash too.Try <A HREF="https://www.pwdhash.com/" REL="nofollow">PwdHash</A> too.Olahttps://www.blogger.com/profile/03957696325499736241noreply@blogger.com