Results 1 to 8 of 8
  1. #1
    Thailand Expat
    david44's Avatar
    Join Date
    Aug 2011
    Last Online
    @
    Location
    Fuente del Berro
    Posts
    27,925

    Passwords avoid AI

    AI has significantly heightened password risks by enabling hackers to automate and accelerate credential-based attacks, often bypassing traditional security measures. AI-powered tools, such as PassGAN, can analyze vast, breached datasets to identify common human patterns and crack weak passwords in seconds, not days. Malwarebytes +3

    Key Risks of AI to Password Security:


    • Rapid Password Cracking: AI algorithms learn from billions of leaked passwords to predict and guess, reducing the time to crack passwords to under a minute for many common combinations.
    • AI-Driven Phishing: Generative AI creates highly personalized, grammatically perfect phishing emails and deepfake videos, making it easier to trick users into giving up credentials.
    • Credential Stuffing: AI accelerates credential stuffing attacks, where stolen usernames and passwords from one site are automatically tested across hundreds of other platforms.
    • Acoustic Attacks: AI models can analyze keyboard sounds, even over a Zoom call, to recreate typed passwords with up to 95% accuracy.
    • Predictable Generation: AI-generated "random" passwords may still have detectable patterns, making them vulnerable, while human-chosen passwords based on personal data (birthdays, names) are easily decoded by AI. PowerDMARC +7

    How to Protect Against AI Password Risks:


    • Use Long Passphrases: Create passwords with 16+ characters, using random combinations of words, numbers, and symbols to maximize entropy, as even "strong" 7-character passwords can be broken in minutes by AI.
    • Never Reuse Passwords: Utilize a unique password for every account to prevent a single breach from compromising your entire digital life.
    • Enable Multi-Factor Authentication (MFA): Add a second layer of security (like authenticator apps) so that even if a password is stolen, the account remains secure.
    • Use Password Managers: Employ reputable password managers to generate truly random, complex passwords and store them securely, rather than relying on LLMs or AI for generation.
    • Adopt Passwordless Authentication: Where available, move to passkeys or biometrics to remove the reliance on static, guessable text passwords. PowerDMARC +7

    While AI enhances attacks, it is also used by defenders for behavioral biometrics (monitoring typing patterns) and spotting abnormal login attempts
    Quote Originally Posted by harrybarracuda View Post
    will swallow any old jizz

  2. #2
    Heading down to Dino's
    bsnub's Avatar
    Join Date
    Jun 2009
    Last Online
    @
    Posts
    35,406
    Quote Originally Posted by david44 View Post
    How to Protect Against AI Password Risks:


    Use Long Passphrases: Create passwords with 16+ characters, using random combinations of words, numbers, and symbols to maximize entropy, as even "strong" 7-character passwords can be broken in minutes by AI.
    Never Reuse Passwords: Utilize a unique password for every account to prevent a single breach from compromising your entire digital life.
    Enable Multi-Factor Authentication (MFA): Add a second layer of security (like authenticator apps) so that even if a password is stolen, the account remains secure.
    Use Password Managers: Employ reputable password managers to generate truly random, complex passwords and store them securely, rather than relying on LLMs or AI for generation.
    Adopt Passwordless Authentication: Where available, move to passkeys or biometrics to remove the reliance on static, guessable text passwords. PowerDMARC +7
    If you are not already doing this then you will eventually get hacked. My guess is most of the luddites on this forum do next to none of these things.


  3. #3
    Thailand Expat
    NamPikToot's Avatar
    Join Date
    Jan 2010
    Last Online
    @
    Posts
    32,837
    google or another password manager gives suggested long entropic passwords

  4. #4
    Thailand Expat armstrong's Avatar
    Join Date
    Oct 2011
    Last Online
    @
    Posts
    9,104
    My password is 987654321 and I've never been hacked so this is all bullshit.

  5. #5
    Thailand Expat Molle's Avatar
    Join Date
    Jun 2023
    Last Online
    @
    Location
    On the fence
    Posts
    1,529
    My short password is secret

    My long password is 1N73LL1G3NC3 IS 7H3 4BILI7Y 70 4D4P7 70 CH4NG3 - S73PH3N H4WK1NG

  6. #6
    Thailand Expat harrybarracuda's Avatar
    Join Date
    Sep 2009
    Last Online
    @
    Posts
    108,148
    Who uses AI to generate passwords?

    A fuckwit, that's who does it.

  7. #7
    RIP brain cells kingwilly's Avatar
    Join Date
    Jan 2006
    Last Online
    @
    Posts
    79,074
    Quote Originally Posted by harrybarracuda View Post
    Who uses AI to generate passwords?

    A fuckwit, that's who does it.

    Where did the article say they were?

  8. #8
    Thailand Expat misskit's Avatar
    Join Date
    Dec 2009
    Last Online
    @
    Location
    Chiang Mai
    Posts
    57,135
    ^
    • Use Password Managers: Employ reputable password managers to generate truly random, complex passwords and store them securely, rather than relying on LLMs or AI for generation.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •