Political Wrinkles  

Go Back   Political Wrinkles > General Discussion > Tech Help, Electronics, & Gaming
Register FAQDonate PW Store PW Trivia Members List Calendar Search Today's Posts Mark Forums Read

Tech Help, Electronics, & Gaming Discuss PIN analysis at the General Discussion; PIN analysis Over the years, there have been numerous password table security breaches: Some very high profile, some low profile, ...

Reply
 
Share LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 09-19-2012, 02:19 AM
cnredd's Avatar
Administrator
 
Join Date: Oct 2007
Location: Philadelphia
Gender: Male
Posts: 39,839
Thanks: 1,150
Thanked 19,476 Times in 12,310 Posts
Default PIN analysis

PIN analysis

Quote:
Over the years, there have been numerous password table security breaches: Some very high profile, some low profile, but all embarrassing (and many exceedingly expensive; both in direct fines and indirect loss of business through erosion of trust and reputation).

Fool me once, well, no, even that’s not really acceptable, but fool me twice … I’ll go even further: Any developer who stores the password table of their database in clear text should be so mortified by this lack of security that they should not be sleeping at night until they fix it. Ignoring the fact that you should never have ever coded it this way, you have an obligation to learn from these past breaches.

If you work for a company and are knowledgeable that your customer database is “protected” by such lightweight security then run, don’t walk, to your CEO/Presidents office, pound on the door and insist (s)he puts out a mandate to fix the matter with extreme prejudice. Don’t leave until you get an affirmative response. Badger, badger then badger them again. Make yourself a proverbial thorn in their side.


Quote:
The most popular password is 1234 …

… it’s staggering how popular this password appears to be. Utterly staggering at the lack of imagination …

… nearly 11% of the 3.4 million passwords are 1234 !!!

The next most popular 4-digit PIN in use is 1111 with over 6% of passwords being this.

In third place is 0000 with almost 2%.

A table of the top 20 found passwords in shown. A staggering 26.83% of all passwords could be guessed by attempting these 20 combinations!

(Statistically, with 10,000 possible combination, if passwords were uniformly randomly distributed, we would expect the these twenty passwords to account for just 0.2% of the total, not the 26.83% encountered)

Looking more closely at the top few records, all the usual suspects are present 1111 2222 3333…9999 as well as 1212 and (snigger) 6969.

It’s not a surprise to see patterns like 1122 and 1313 occurring high up in the list, nor 4321 or 1010 .

2001 makes an appearance at #19. 1984 follows not far behind in position #26, and James Bond fans may be interested to know 0007 is found between the two of them in position #23 (another variant 0070 follows not much further behind at #28).

The first “puzzling” password I encountered was 2580 in position #22. What is the significance of these digits? Why should so many people select this code to make it appear so high up the list?

Then I realized that 2580 is a straight down the middle of a telephone keypad!
This data comes strictly from a numerical perspective, but I have a feeling a lot of people use their own name or the name of their child for a PIN from a telephone pad (Where a name like "Mary" would be "6279")...
__________________
"You get the respect that you give" - cnredd
Reply With Quote
The Following 2 Users Say Thank You to cnredd For This Useful Post:
  #2 (permalink)  
Old 09-19-2012, 02:52 AM
Comet's Avatar
My God it's full of stars
 
Join Date: Aug 2011
Location: Earth
Gender: Male
Posts: 10,670
Thanks: 3,370
Thanked 5,280 Times in 3,397 Posts
Send a message via AIM to Comet
Default Re: PIN analysis

I know everyone's password. They are all the same. Just punch in four asterisks and voila!
__________________

"The oldest picture book in our possession is the midnight sky" - E. W. Maunder
Reply With Quote
The Following User Says Thank You to Comet For This Useful Post:
  #3 (permalink)  
Old 09-19-2012, 06:25 AM
saltwn's Avatar
PW Enlightenment
 
Join Date: Oct 2007
Location: in the natural state
Posts: 41,352
Thanks: 30,782
Thanked 17,025 Times in 11,554 Posts
Send a message via Yahoo to saltwn
Default Re: PIN analysis

in my quest for wifi in my ahem...criminal past which I sall not repeat I have actually gotten 1234 and "password" to work.
__________________
Fox caught Obama Presidentin' while Black.
Reply With Quote
  #4 (permalink)  
Old 09-19-2012, 02:09 PM
Comet's Avatar
My God it's full of stars
 
Join Date: Aug 2011
Location: Earth
Gender: Male
Posts: 10,670
Thanks: 3,370
Thanked 5,280 Times in 3,397 Posts
Send a message via AIM to Comet
Default Re: PIN analysis

Quote:
Originally Posted by saltwn View Post
in my quest for wifi in my ahem...criminal past which I sall not repeat I have actually gotten 1234 and "password" to work.
If I ever move in near you, I will change my wifi name to "FBI Van" to freak you out.
__________________

"The oldest picture book in our possession is the midnight sky" - E. W. Maunder
Reply With Quote
The Following User Says Thank You to Comet For This Useful Post:
  #5 (permalink)  
Old 09-19-2012, 02:24 PM
saltwn's Avatar
PW Enlightenment
 
Join Date: Oct 2007
Location: in the natural state
Posts: 41,352
Thanks: 30,782
Thanked 17,025 Times in 11,554 Posts
Send a message via Yahoo to saltwn
Default Re: PIN analysis

Quote:
Originally Posted by Comet View Post
If I ever move in near you, I will change my wifi name to "FBI Van" to freak you out.
__________________
Fox caught Obama Presidentin' while Black.
Reply With Quote
Reply

Tags
analysis, pin

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Forum Jump


All times are GMT -5. The time now is 08:17 PM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2013, vBulletin Solutions, Inc.

Content Relevant URLs by vBSEO 3.2.0