• JigglySackles@lemmy.world
    link
    fedilink
    English
    arrow-up
    9
    ·
    17 hours ago

    Honestly, for at home personal use, it’s better than any on device password manager. It’s not hackable. Someone has to break into your home and steal it. For an office environment though…worst way to handle it after sticky notes.

  • ZILtoid1991@lemmy.world
    link
    fedilink
    English
    arrow-up
    12
    ·
    20 hours ago

    It’s actually super useful for old people, who sometimes like to “accidentally log off” and stuff.

  • skisnow@lemmy.ca
    link
    fedilink
    English
    arrow-up
    28
    arrow-down
    1
    ·
    1 day ago

    So far the combined might of the Russian, Chinese, American and North Korean hacking teams have been unable to crack the post-it note on my desk.

  • tym@lemmy.world
    link
    fedilink
    English
    arrow-up
    15
    arrow-down
    4
    ·
    1 day ago

    This isn’t the flex you think it is, OP. 99% of cybercriminals are also cowards. Physical security of ANY kind beats even the best password managers.

    If you don’t know what lattice-based encryption is and how to purchase it through NordVPN, start reading up because encryption as we know it isn’t long for this world. Pretty sure they already dragged their feet too long on Bitcoin’s algorithm but the day cracking common ciphers is within the grasp of quantum clusters is the day we all become Amish. Plan accordingly!

    • Cocodapuf@lemmy.world
      link
      fedilink
      English
      arrow-up
      9
      ·
      edit-2
      6 hours ago

      My understanding is that quantum computing has been taken into account for some modern cryptography. And that memory-hard cryptography basically defeats quantum computing solutions. There are a few methods, but one of them is just very long keys, it’s trivial to make a cryptographic key longer.

      So sure, you could defeat some of that with a machine operating with 1024 entangled qbits, (which is… oh man… not an easy task), in which case, wow, congratulations. But what if I increase my key length to 100k? It might take an extra 3 seconds to check the key and log in, but it’ll take an extra 25 years for quantum computing to catch up.

  • dejected_warp_core@lemmy.world
    link
    fedilink
    English
    arrow-up
    23
    ·
    1 day ago

    PSA: Home use? That’s probably okay. Work use? If you’re in-office, this is a ticking time-bomb that can get you fired, one way or another. Use the company 1password or whatever you have access to, please. Thank you.

    • Chaotic Entropy@feddit.uk
      link
      fedilink
      English
      arrow-up
      4
      ·
      23 hours ago

      InfoSec likes nothing more than for you to tell them not to worry because you write all your passwords down and only read emails after you’ve printed them. 100% secure.

    • Frostbeard@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      23 hours ago

      In my office I have a list that says passwords all nonsens and just as a decoy. I have a system that I use for rotation woth a visual reminder (by association, not directly) somwhere in my office

  • appropriateghost@lemmy.ml
    link
    fedilink
    English
    arrow-up
    17
    ·
    1 day ago

    we might laugh at this but I think this is useful. Even though I wouldn’t use something like this and I’d just use a regular dedicated blank notebook and my password manager, it can be useful to people who have problems with computers and can’t handle a password manager, yet may give pages with good templates to show how to record sensitive information.

    • zyberteq @lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      ·
      24 hours ago

      For a lot of people at 60+, writing things down is easier and safer. It will also help anyone that would need to troubleshoot or in the event of death in a very simple way.

  • TheGrandNagus@lemmy.world
    link
    fedilink
    English
    arrow-up
    47
    arrow-down
    1
    ·
    2 days ago

    Honestly, a physical password book isn’t a bad idea.

    Not accessible via the internet, and in most cases if someone has physical access to your system you’re done for anyway.

    The main weakness it has is from a nosey flatmate, spouse, or child in the house.

    • tiramichu@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      29
      arrow-down
      1
      ·
      2 days ago

      Yep. My Dad in his late 70s uses this system and it works great for him.

      People make fun of it, but for people with low tech literacy this is actually far better than having a mish-mash of solutions where some their logins end up automatically saved in iOS on their phone, some are saved in Chrome on the desktop, some are just in their head, they don’t know where anything is, and are constantly losing access and resetting credentials all the time.

      And it definitely reduces the burden on me of parental tech support, when its all in the book.

    • Darren@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      7
      ·
      2 days ago

      My Mum died recently and my step dad is shit with tech, so their password book was invaluable in helping us gain access to her Apple account and her phone. It meant we were able to get to her iCloud passwords, so now we have access to everything.

      So yeah, password books are actually pretty handy.

    • brot@feddit.org
      link
      fedilink
      English
      arrow-up
      5
      ·
      2 days ago

      Yeah, my in-laws have such a book and it honestly is great. They live in their own flat where nobody can access the book without breaking in. They do not save their passwords in their browser, so anyone hacking into their PC can’t grab them. If they want to login into an account, they take out their book, put in the user name and unique password and that’s it. Quite the good method and I really do not see many problems there.

    • tarknassus@lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      arrow-down
      1
      ·
      2 days ago

      “People can no longer remember passwords good enough to reliably defend against dictionary attacks, and are much more secure if they choose a password too complicated to remember and then write it down.

      We’re all good at securing small pieces of paper. I recommend that people write their valuable passwords down on a small piece of paper, and keep it with their other valuable small pieces of paper: in their wallet.

      Obscure it somehow if you want added security: write “bank” instead of the URL of your bank, transpose some of the characters, leave off your userid. This will give you a little bit of time if you lose your wallet and have to change your passwords. But even if you don’t do any of this, writing down your impossible-to-memorize password is more secure than making your password easy to memorize.”

      Bruce Schneier - 2005.

    • Eezyville@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 days ago

      The main weakness it has is from a nosey flatmate, spouse, or child in the house.

      Watch out for that home grown script kiddie

    • A_norny_mousse@feddit.org
      link
      fedilink
      English
      arrow-up
      2
      arrow-down
      4
      ·
      edit-2
      2 days ago

      The main weakness it has is from a nosey flatmate, spouse, or child in the house.

      I disagree. Using this book will always lead to shorter passwords that are easier to type. That’s the main weakness imo.

      Or in other words: it really depends what the user fills it with. It should be accompanied by a little machine that spits out random passwords, I’m thinking a rubics-cube-shaped bling pendant at the end of the bookmark band.

      • Telodzrum@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        arrow-down
        1
        ·
        2 days ago

        Not at all. It will lead to easier to type passwords, likely. But that doesn’t mean shorter. This could easily be filled with passwords that are four words long with special characters interspersed.

        • A_norny_mousse@feddit.org
          link
          fedilink
          English
          arrow-up
          1
          arrow-down
          4
          ·
          edit-2
          22 hours ago

          Which you then have to type out every time. Laziness wins: they will be shorter.

          The assumption is that the product is for non-savvy users. They might not even understand what you wrote up there.

          Autocorrect can help here, but dictionary words are easily brute-forced guessed. And - more importantly - that hypothetical user would have to come up with that idea in the first place. But people who come up with such ideas usually already use password managers anyhow.

          • Telodzrum@lemmy.world
            link
            fedilink
            English
            arrow-up
            1
            arrow-down
            1
            ·
            2 days ago

            Several dictionary words in series cannot be “easily brute forced.”

            You’re out of you’re depth and saying stupid things.

  • ansiz@lemmy.world
    link
    fedilink
    English
    arrow-up
    17
    ·
    2 days ago

    Sure, it’s a horrible idea in an open office environment but if someone wants to use this at home for all their passwords it really won’t hurt anything.

  • flop_leash_973@lemmy.world
    link
    fedilink
    English
    arrow-up
    10
    ·
    edit-2
    2 days ago

    My mother uses something similar to keep track of her passwords for everything. While I prefer a password manager like Bitwarden or Keepass. I would rather her use a note book like this over something like Google or Apples password managers.

    Or even worse, the same password for everything.

    • TwoBeeSan@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      2 days ago

      Of the 200 elderly I see maybe 75% still use the book or a variation of it.

      The best is when they use iPad notes or even their fucking contacts to save info lol