For me it’s the paranoia surrounding webcams. People outright refuse to own one and I understand, until they go on and on about how they’re being spied. Here’s the secret - unplug the damn thing when you think you won’t use it or haven’t used it in a while.

They, whoever it is, can’t really spy on you on something that’s already off and unplugged!

  • ssm@lemmy.sdf.org
    link
    fedilink
    arrow-up
    75
    ·
    edit-2
    3 months ago

    I call this one forbidden knowledge because I see it so little in public, but I’m sure it’s well known in privacy communities: A password like “I have this really secure password that I type into computers sometimes” is a much stronger and easier to memorize password than “aB69$@m”. It seems more often than not I find networks where the SSID is a better password than the WPA key.

    • kambusha@sh.itjust.works
      link
      fedilink
      arrow-up
      30
      ·
      3 months ago

      I agree but I think the problem is that some apps/sites have strict password requirements, which usually includes adding upper-case, symbols, numbers, and then limits the length even sometimes…

        • cmfhsu@lemmy.world
          link
          fedilink
          arrow-up
          11
          ·
          3 months ago

          At one point, Charles Schwab allowed a password of infinite length, but SILENTLY TRUNCATED ALL PASSWORDS TO 8 DIGITS.

          This is something I sent a few angry emails about wherever I could find an opportunity.

        • kamen@lemmy.world
          link
          fedilink
          arrow-up
          3
          ·
          edit-2
          3 months ago

          Sketchy indeed. I’ve seen this as well, and the redeeming thing about it is that you’re locked out after 3 unsuccessful login attempts - so no matter how easy bruteforcing would be, there’s a safety catch dealing with it.

    • pinjure@lemmy.ml
      link
      fedilink
      Esperanto
      arrow-up
      27
      ·
      3 months ago

      the SSID is a better password than the WPA key

      This is an insult I am definitely saving for later

    • cmfhsu@lemmy.world
      link
      fedilink
      arrow-up
      4
      ·
      edit-2
      3 months ago

      I agree - I do use passphrases in some critical cases which I don’t want to store in a password manager.

      However, I believe passphrases are theoretically more susceptible to sophisticated dictionary type attacks, but you can easily mitigate it by using some less-common 1337speak character replacements.

      Highly recommend a password manager though - it’s much easier to remember one or two complex master keyring passwords & the random generated passwords will easily satisfy any application’s complexity requirements.

      • Random Dent@lemmy.ml
        link
        fedilink
        English
        arrow-up
        2
        ·
        3 months ago

        Yeah that’s basically what I do, I know the passphrase to decrypt my drive, and the one to open Bitwarden and then I basically let that just handle everything else.

        Oh and the sudo one I guess.