Close
Page 4 of 5 FirstFirst 12345 LastLast
Results 31 to 40 of 42
  1. #31
    BANNED....or not? Skip's Avatar
    Join Date
    Jan 2013
    Location
    Highlands Ranch, CO
    Posts
    3,871

    Default

    Funny story...

    Did some work for a company using their development environment. We had a BA enter accounts to run test cases. He set up about a dozen but one was odd because the rest were like TestAccount1, TestAccount2, etc... Turned out to be the name of an actual ex Jenny _______ with the password = hotsex69.

    He didn't know that column encryption wasn't enabled on the password field in the user table because it was a dev environment.

    For the remainder of my time there, I called him Hotsex. He had a good sense of humor

    Another story...

    Did some work for a different company with an online presence where I was a customer many years ago. They replicated their production DB into a dev/test environment and failed to anonymize the PII and remove the passwords. There was my name, SSN, address, and password from many years prior.

    Last one...

    Had a coworker need help with login, called the helpdesk and had them on speakerphone. Rep asked for his password. This was an ancient AS/400 system that limited us to four characters. His password? POOP. Rep says "what?" He responds "PEE OOH OOH PEE." We died.

    Moral of the story: Just because the UI doesn't show your password doesn't mean other people can't see it.

    Side note: It is incredibly easy to anonymize info and obliterate passwords in data. Whenever I move data, I make it a point to do this. Even financial data for companies is scrubbed. But don't you dare tell a DBA why that's important because they know best even when they don't.

  2. #32
    Mr Yamaha brutal's Avatar
    Join Date
    Jul 2011
    Location
    Unincorporated Douglas County, CO
    Posts
    13,935

    Default

    Quote Originally Posted by Skip View Post

    Had a coworker need help with login, called the helpdesk and had them on speakerphone. Rep asked for his password. This was an ancient AS/400 system that limited us to four characters. His password? POOP. Rep says "what?" He responds "PEE OOH OOH PEE." We died.
    Probably a lot of "ancient" AS/400 still out there running, but after 26 years, the OS is still alive and kicking. http://www-03.ibm.com/systems/power/...e/i/index.html

    Four character pwd would have been set as a system value. Prior to complex password support, up to 8 characters. Used to be an option for no password required at all, but it's been gone from the OS for very many years now. This was prior to Token Ring, Ethernet and TCP/IP, when we had hard wired terminals.
    My Feedback
    Credit TFOGGER : Liberals only want things to be "fair and just" if it benefits them.
    Credit Zundfolge: The left only supports two "rights"; Buggery and Infanticide.
    Credit roberth: List of things Government does best; 1. Steal your money 2. Steal your time 3. Waste the money they stole from you. 4. Waste your time making you ask permission for things you have a natural right to own. "Anyone that thinks the communists won't turn off your power for being on COAR15 is a fucking moron."

  3. #33
    Possesses Antidote for "Cool" Gman's Avatar
    Join Date
    Oct 2005
    Location
    Puyallup, WA
    Posts
    17,848

    Default

    Seems like we're moving back to shared computing. They just call it "the cloud" and your terminal is a browser.

    I remember when you wanted a color monitor, you had 2 choices - green or amber.
    Last edited by Gman; 03-26-2017 at 08:17.
    Liberals never met a slippery slope they didn't grease.
    -Me

    I wish technology solved people issues. It seems to just reveal them.
    -Also Me


  4. #34
    My Fancy Title gnihcraes's Avatar
    Join Date
    Apr 2008
    Location
    CastleRock/Lakewood
    Posts
    4,423

    Default

    I'm still fluent in iSeries (as/400) for a government agency today. Very much alive and well.
    Sometimes people trip and fall down stairs.
    Sometimes assholes push people down stairs.
    That doesn't mean "stairs are bad" nor does it make someone who pushes someone down the stairs any less of an asshole.

  5. #35
    BIG PaPa ray1970's Avatar
    Join Date
    Feb 2010
    Location
    Thornton
    Posts
    18,799
    Blog Entries
    1

    Default

    I had the same password for my work computer for years. It was one of those that you had to every sixty days or so and I would keep,it the same and just change the last couple of digits. Worked well for about twelve years. Then those IT screwballs changed the rules and my password could no longer contain the word "password" and I was screwed. Lol.

    My password used to be "Password01" and I would just change it to 02, 03, etc. every time I had to change it.

    Apparently after twelve years that no longer met my company's strict security requirements.

    I hope they don't find out that I have all of my logins and passwords written down in a book in my desk drawer. That will really make their heads spin.

    I don't know how else they could expect anyone to remember unique logins and passwords for the computer, the time sheet program, my vehicle expense account, my purchase card, the corporate training site, my account access for controls operations, my benefits website, my retirement website, the HR service portal, and about six other things that require me to login with a password.

    And that's just for work. I probably have about fifty other things to keep track of for my personal life. Some of those are written down as well. Some aren't.

    I say fingerprint scans or retinal scans for everything screw the passwords.

  6. #36
    Machine Gunner RblDiver's Avatar
    Join Date
    Feb 2013
    Location
    Longmont
    Posts
    2,130

    Default

    Quote Originally Posted by Zundfolge View Post
    (because I'm not going to memorize a 12 random character PW)
    You know, a random-character password isn't more secure than a password of words you can remember.
    http://www.explainxkcd.com/wiki/inde...sword_Strength

    (I will point out that I do very poor practice and basically use the same password all around, or at least as much as they let me. I hate sites that have an upper limit on passwords that I have to remember where it stops!)

  7. #37
    Mr Yamaha brutal's Avatar
    Join Date
    Jul 2011
    Location
    Unincorporated Douglas County, CO
    Posts
    13,935

    Default

    Quote Originally Posted by gnihcraes View Post
    I'm still fluent in iSeries (as/400) for a government agency today. Very much alive and well.
    Gov or Quasi Gov?

    I'm an infrastructure/engineering guy, no coding.

    Hiring?
    Last edited by brutal; 03-26-2017 at 12:43.
    My Feedback
    Credit TFOGGER : Liberals only want things to be "fair and just" if it benefits them.
    Credit Zundfolge: The left only supports two "rights"; Buggery and Infanticide.
    Credit roberth: List of things Government does best; 1. Steal your money 2. Steal your time 3. Waste the money they stole from you. 4. Waste your time making you ask permission for things you have a natural right to own. "Anyone that thinks the communists won't turn off your power for being on COAR15 is a fucking moron."

  8. #38
    Zombie Slayer Zundfolge's Avatar
    Join Date
    Jul 2007
    Location
    Wichita, KS (formerly COS)
    Posts
    8,317

    Default

    Quote Originally Posted by RblDiver View Post
    You know, a random-character password isn't more secure than a password of words you can remember.
    http://www.explainxkcd.com/wiki/inde...sword_Strength

    (I will point out that I do very poor practice and basically use the same password all around, or at least as much as they let me. I hate sites that have an upper limit on passwords that I have to remember where it stops!)
    As much as I enjoy the XKCD cartoon (after all I posted it earlier in this thread) it doesn't take into account how actual hackers hack passwords. If they're going to "brute force" hack the password (that is just start throwing guesses en masse at the login) they tend to start out with a "commonly used passwords" list, then move to a dictionary, THEN run random characters.
    But more commonly they'll look through your social media and compile a list of words that seem meaningful to you because most people use meaningful words as a password (for example my boss uses his wife's middle name plus their anniversary date for all his passwords).

    No password is uncrackable, but actual words are slightly easier to guess. The strategy employed by the XKCD guy is long pass phrases of random words, which will work well against someone running a purely random brute force hack.
    Modern liberalism is based on the idea that reality is obligated to conform to one's beliefs because; "I have the right to believe whatever I want".

    "Everything the State says is a lie, and everything it has it has stolen.
    -Friedrich Nietzsche

    "Every time something really bad happens, people cry out for safety, and the government answers by taking rights away from good people."
    -Penn Jillette

    A World Without Guns <- Great Read!

  9. #39
    Mr Yamaha brutal's Avatar
    Join Date
    Jul 2011
    Location
    Unincorporated Douglas County, CO
    Posts
    13,935

    Default

    Quote Originally Posted by gnihcraes View Post
    I'm still fluent in iSeries (as/400) for a government agency today. Very much alive and well.
    Have a client that runs contact stuff for gov and is in the finance industry (PCI).

    root password (not really "root") hasn't changed in eleventy years. In all honesty, only those with special access can even get somewhere they could enter those credentials, and everything is encrypted over the wire of course.
    My Feedback
    Credit TFOGGER : Liberals only want things to be "fair and just" if it benefits them.
    Credit Zundfolge: The left only supports two "rights"; Buggery and Infanticide.
    Credit roberth: List of things Government does best; 1. Steal your money 2. Steal your time 3. Waste the money they stole from you. 4. Waste your time making you ask permission for things you have a natural right to own. "Anyone that thinks the communists won't turn off your power for being on COAR15 is a fucking moron."

  10. #40
    Mr Yamaha brutal's Avatar
    Join Date
    Jul 2011
    Location
    Unincorporated Douglas County, CO
    Posts
    13,935

    Default

    Quote Originally Posted by Zundfolge View Post
    As much as I enjoy the XKCD cartoon (after all I posted it earlier in this thread) it doesn't take into account how actual hackers hack passwords. If they're going to "brute force" hack the password (that is just start throwing guesses en masse at the login) they tend to start out with a "commonly used passwords" list, then move to a dictionary, THEN run random characters.
    But more commonly they'll look through your social media and compile a list of words that seem meaningful to you because most people use meaningful words as a password (for example my boss uses his wife's middle name plus their anniversary date for all his passwords).

    No password is uncrackable, but actual words are slightly easier to guess. The strategy employed by the XKCD guy is long pass phrases of random words, which will work well against someone running a purely random brute force hack.
    Most common user accounts are wide open after securing access to another database through exploits.

    With most accounts getting locked out quickly after xx bad tries, brute force attacks on Joe blow's email or bank account isn't likely.

    However, just one more reason to chose two (or if required 3) factor authentication methods where offered.
    My Feedback
    Credit TFOGGER : Liberals only want things to be "fair and just" if it benefits them.
    Credit Zundfolge: The left only supports two "rights"; Buggery and Infanticide.
    Credit roberth: List of things Government does best; 1. Steal your money 2. Steal your time 3. Waste the money they stole from you. 4. Waste your time making you ask permission for things you have a natural right to own. "Anyone that thinks the communists won't turn off your power for being on COAR15 is a fucking moron."

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •