비번 생성 방법. 이게 사실인가요?

SilverWhalle의 이미지

안전한 비번을 만드는 방법에 대한 툰입니다.
자세하 내용은 이해를 못하겠는데, 요지는 인간이 기억하기 쉽고
컴퓨터가 계산하기 힘든 비번이란게 영문단어 네개이상 조합이다라는
것 같은데.. 사실인가요?

File attachments: 
첨부파일 크기
Image icon Screen Shot 2013-02-03 at 10.36.51 AM.png172.64 KB
shint의 이미지

번역은 다른분이 하시는게 좋겠네요.

uncommon
(non-gibberish)
order unknown
caps common substitutions punctuation numeral
you can add a few more bits to
account for the fact that
this is only one of a few common formats

~28 bits of entropy.
2^28 = 3 days at
1000 geesses/sec
plausible attack on a weak remote web service.
yes. cracking a stolen hash is faster.
but it's not what the average user should worry about

difficulty to guess easy

was it trombone?
no. troubador. and one of the OS was a zero?

and there was some symbol...

difficulty to remember : hard

correct horse battery staple

four random common words

~44 bits of entropy
2^44 = 550 years at 1000 guesses/sec

difficulty to guess : hard

that's a battery staple.
correct!

difficulty to remember :
you'be already memorizeo it

through 20 years of effort, we've successfully trained
everyone to use passwords that are hard for humans
to remember, but easy for computers to guess

----------------------------------------------------------------------------
젊음'은 모든것을 가능하게 만든다.

매일 1억명이 사용하는 프로그램을 함께 만들어보고 싶습니다.
정규 근로 시간을 지키는. 야근 없는 회사와 거래합니다.

각 분야별. 좋은 책'이나 사이트' 블로그' 링크 소개 받습니다. shintx@naver.com

Prentice의 이미지

https://xkcd.com/936/

https://xato.net/passwords/analyzing-the-xkcd-comic/#.UjQqLLzXdjA

단어만 조합할 게 아니라 알기 쉬운 변형도 가한다면 더욱 강력해진다는 얘기도 있네요.