Oddbean new post about | logout
 Security "experts" don't want to hear this: But forcing people to log in more often does, in fact, increase the likelihood that:

- Someone will shouldersurf your password
- People will find shortcuts to make logging in more convenient
- People will chose passwords that are least annoying to them irrespective to how secure it is
- Phishing attacks are more successful 
 @4fec80e1 i love to put in short simple passwords that i can type in easily with mobilephones for that.
Meaining mostly alphanumeric (and spaces. but paypal for example disallows spaces in their passwords?)

services that start requiring special characters are such a nuisance that i avoid them if possible.

personally i have sa rather long alphanumeric password with spaces. easy to type and remember. but there are so many weird requirements for some passwords... 
 you bougie bitch :pepe_giggle: 
 
there's truth to that 
 Just checking I haven't missed any corners of this conversation:

Calling @52fb7141 ...

CC: @4fec80e1