In password security, the longer the better. With a password manager, using more than 24 characters is simple. Unless, of course, the secure password is not accepted due to its length. (In this case, through STOVE.)

Possibly indicating cleartext storage of a limited field (which is an absolute no-go), or suboptimal or lacking security practices.

you are viewing a single comment's thread
view the rest of the comments
[–] 10 points 1 year ago (2 children)

I really hope you don't work in the tech industry.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 0 points 1 year ago (1 child)

    I've yet to see anyone link to a source

    Here is where I'm getting my info

    https://cybersecuritynews.com/nist-rules-password-security/

  • source
  • parent
  • hideshow 2 child comments
  • [–] 4 points 1 year ago

    you realize that they say the exact opposite of what you are saying, right?

    Longer passwords are generally more secure and easier for users to remember,” said Dr. Paul Turner, a cybersecurity expert at NIST. “We’re moving away from complex rules that often lead to predictable patterns and towards encouraging unique, lengthy passphrases.

  • source
  • parent
  • [–] -5 points 1 year ago (2 children)

    You haven't provided any evidence to support your claim. Online accounts can't easily be brute forced.

    If a hash is leaked you just change the password. As long as you aren't reusing the same password everywhere you are fine.

  • source
  • parent
  • hideshow 4 child comments