[WEB SECURITY] suggesting passwords to users

Nick Owen nowen at wikidsystems.com
Tue May 1 09:54:26 EDT 2007


> 
> The better solution against this is a one-time password scheme.

which is why we released an open-source version of our OTP system:
http://www.wikidsystems.net/.  Passwords suck and there wasn't a good
open source alternative.  It also gets around the language barrier.
Words like 'napkin' may be very difficult for a non-English speakers.

> p.s. Maybe we could create a DRM for passwords so sites could provide a
> password and then sue users who share or copy them onto alternate media?  :)

And, while it requires a software download, each token client supports
multiple relationships, so no DRM required :).

-- 
Nick Owen
WiKID Systems, Inc.
404.962.8983
http://www.wikidsystems.com
Commercial/Open Source Two-Factor Authentication
https://www.linkedin.com/in/nickowen

----------------------------------------------------------------------------
Join us on IRC: irc.freenode.net #webappsec

Have a question? Search The Web Security Mailing List Archives: 
http://www.webappsec.org/lists/websecurity/

Subscribe via RSS: 
http://www.webappsec.org/rss/websecurity.rss [RSS Feed]



More information about the websecurity mailing list