【Beauty Salon Special Service 4】
You must use at least one uppercase letter,Beauty Salon Special Service 4 a symbol, and a number. Or, wait, maybe not.
According to the experts at the National Institute of Standards and Technology (NIST), some of the password-strength requirements drilled into our skulls over the years are actually not that helpful.
What's worse, they may be counterproductive.
SEE ALSO: New tool teaches you how to set stronger passwordsAs such, the institute issued a new draft of security guidelines on May 11, 2017, aimed at security professionals and recommending several significant changes to the password requirements we've come to accept as a necessary part of life.
What's different? Well, for one, the experts say that forcing users to create passwords which include numbers and random characters is no longer necessary.
"[Online] services have introduced rules in an effort to increase the complexity of [passwords]," reads the draft appendix. "The most notable form of these is composition rules, which require the user to choose passwords constructed using a mix of character types, such as at least one digit, uppercase letter, and symbol. However, analyses of breached password databases reveals that the benefit of such rules is not nearly as significant as initially thought, although the impact on usability and memorability is severe."
Basically, passwords full of #'s and &'s are hard to remember, and they don't actually offer that much of a benefit. Instead, NIST recommends that people be allowed to choose any password of 8 characters or more — with a catch.

The catch being that whatever the user selects should be compared against a list of known common passwords. Lists of stolen passwords exist, and if the key to your email account is something like "monkey" then NIST says it should be rejected.
Who is doing the work of comparing your desired password against the aforementioned list? Don't worry, it's not you. Instead, that responsibility would theoretically fall to whatever service you're trying to create an account with.
What else does NIST throw out the digital window? Why that would be a little annoying thing called forced password resets. That's right, it turns out obligating users to change their passwords — regardless of any data breaches or lack thereof — is counterproductive. Of course, if a company discovers it's been hacked, you should still be required to reset your login information.
The experts at NIST also go after what is a huge pet peeve of mine: security questions. Preset security questions that a user is forced to fill out, like "what high school did you attend," are easily discovered by hackers via a simple Google search (as Sarah Palin once painfully discovered) and should be done away with entirely.
"Verifiers also SHALL NOT prompt subscribers to use specific types of information (e.g., 'What was the name of your first pet?') when choosing memorized secrets," the draft declaratively states. Nice.
So, to recap: No special characters required, no forced password resets, and no fixed (easily guessable) security questions. It's almost like all the password security advice we've been given is wrong.
Except that chestnut about using two-factor authentication. You should still definitely do that.
Featured Video For You
Mute the world around you with these ear plugs of the future
Topics Cybersecurity
Search
Categories
Latest Posts
Best headphones deal: Save up to 51% on Beats at Amazon
2025-06-26 07:37NYT Strands hints, answers for April 15
2025-06-26 07:24Tech CEO promised AI but hired human workers, FBI claims
2025-06-26 06:52NYT mini crossword answers for April 14, 2025
2025-06-26 06:35Popular Posts
The Anatomy of Liberal Melancholy
2025-06-26 07:34Jack Dorsey, Elon Musk call to delete IP laws as artists resist
2025-06-26 06:47Best Amazon Fire TV Cube deal: Save $30 at Amazon
2025-06-26 06:15SpaceX's Starlink satellite launch in pictures
2025-06-26 05:53Featured Posts
10 Tech Predictions for 2017
2025-06-26 06:54Report: Used Teslas flooded the market in March 2025
2025-06-26 05:58Blink Mini 2 deal: $19.99 at Amazon (save $20.99)
2025-06-26 05:50Best Echo Pop deal: Save $10 at Amazon
2025-06-26 05:31Popular Articles
A worthless juicer and a Gipper-branded server
2025-06-26 07:32Is 'Nickel Boys' streaming anywhere? Here's where to watch it.
2025-06-26 07:16Get the Samsung Galaxy S25 Ultra for $400 of at Amazon
2025-06-26 06:43Newsletter
Subscribe to our newsletter for the latest updates.
Comments (24314)
Global Information Network
Ryzen 5 1600X vs. 1600: Which should you buy?
2025-06-26 07:35Treasure Information Network
How to unblock Xnxx for free
2025-06-26 07:25Exquisite Information Network
NYT Connections Sports Edition hints and answers for April 15: Tips to solve Connections #204
2025-06-26 07:15Impression Information Network
Wordle today: The answer and hints for April 15, 2025
2025-06-26 05:14Information Information Network
Samsung Unpacked stream is set for May 12, 2025
2025-06-26 05:14