How to create cryptographically-secure passphrase using dice and EFF wordlist

  Рет қаралды 9,121

Sun Knudsen

Sun Knudsen

Күн бұрын

In this episode, we explore how to create cryptographically-secure passphrase using dice and EFF wordlist.
==============================
LINKS
==============================
Password policy series 👉 • Password policy series
passphraseme 👉 github.com/micahflee/passphra...
EFF Dice-Generated Passphrases 👉 www.eff.org/dice
Privacy guides reference material 👉 sunknudsen.com/privacy-guides
Opt Out 👉 www.optoutpod.com/
==============================
SUPPORT
==============================
Support this channel 👉 sunknudsen.com/donate

Пікірлер: 38
@ve4154
@ve4154 2 жыл бұрын
This is such a coincidence! I just today implemented an EFF wordlist based passphrase generator for my pet project. Thank you Sun :)
@androbuntu
@androbuntu 2 жыл бұрын
Thanks Sun, I always learning something new from your channel.
@Leo-Crespi
@Leo-Crespi 2 жыл бұрын
Really enjoyed the podcast episode, good stuff! Happy new year, Sun.
@sunknudsen
@sunknudsen 2 жыл бұрын
Glad you enjoyed podcast… Happy new year!
@sophiegadoury830
@sophiegadoury830 2 жыл бұрын
Thanks for creating this printer-friendly version; so much better that way!!!!!!!!!! Very cool UX indeed 👍🏻
@galaxytrio
@galaxytrio Жыл бұрын
Thanks, Sun. Very useful.
@bahamu
@bahamu 2 жыл бұрын
Awesome! I was just thinking about this today!
@dg9158
@dg9158 2 жыл бұрын
You’re amazing sun ! Love this channel
@sunknudsen
@sunknudsen 2 жыл бұрын
Thanks for the push David 🤓
@micpom8460
@micpom8460 2 жыл бұрын
Invaluable guide. Thank you
@sunknudsen
@sunknudsen 2 жыл бұрын
Pleasure!
@draztiqmeshaz6226
@draztiqmeshaz6226 2 жыл бұрын
This is really cool, and I have a question: Aren't word lists a common resource for brute-force cracking? If you use a known list, does that not then shrink the search space drastically?
@sunknudsen
@sunknudsen 2 жыл бұрын
Yes, but thankfully, it isn’t a problem… interestingly enough, most crypto wallets are backed up using mnemonics (many of which use the BIP39 wordlist made up of 2048 words). When one uses a good key derivation function, key space is too large to brute force). See sunknudsen.com/stories/exploring-the-password-policy-rabbit-hole.
@draztiqmeshaz6226
@draztiqmeshaz6226 2 жыл бұрын
@@asificam1 thank you for that!
@xblackrainbow
@xblackrainbow 2 жыл бұрын
big fan of your works.... is there a way to make diceroll passphases for crypto/btc without installing any softwares to calculate the checksum (last word)?
@pipeliner8969
@pipeliner8969 2 жыл бұрын
I wish Merry Secure Christmas
@sunknudsen
@sunknudsen 2 жыл бұрын
Thanks! Same 🤓
@Lafsimons
@Lafsimons 2 жыл бұрын
Hi Sun, great video, I will print your lists and use them :) I have a question as I’m about to downgrade from Monterey to whether Big Sur or Catalina. What are you using or would you recommend?
@sunknudsen
@sunknudsen 2 жыл бұрын
I would go for Big Sur while considering all versions of macOS a compromise between convenience and privacy. For example, I use Tails for “sensitive” use cases.
@user-ju1bb2ff4t
@user-ju1bb2ff4t 2 ай бұрын
awesome content, very digestible format and the sequence makes sense, god transition into shoutout, what's not to like here, hmmm, i still don't understand why 5 words are secure compared to a random password generator like avast that uses different input characters
@rodrigomatos759
@rodrigomatos759 2 жыл бұрын
Great video Sun. Off topic: could you share that wallpaper? I really hate the way bigsur and monterey make the top bar blend in based on the wallpaper's colors but this one you're using gives a cool/ dark look without being completely dark and doesn't look like it's part of the bezels
@sunknudsen
@sunknudsen 2 жыл бұрын
Sure, here you go. unsplash.com/photos/pl7wrpPSm2o I agree image looks great on macOS… and I find it calming.
@rodrigomatos759
@rodrigomatos759 2 жыл бұрын
@@sunknudsen Thanks!
@plasmatech576
@plasmatech576 2 жыл бұрын
I wonder if it is possible to do the last word sha256 checksum by hand.
@zecmikoko1172
@zecmikoko1172 2 жыл бұрын
please could you reupload macos big sur episode? I really want to set up my mac right
@mw2randomCRAP
@mw2randomCRAP 2 жыл бұрын
can you add donations via the lightning network?
@hamadsaid7212
@hamadsaid7212 2 жыл бұрын
How about trezor password manager !?
@entertained5581
@entertained5581 2 жыл бұрын
If I install an app using homebrew, is it better to uninstall it using homebrew or using the app-cleaner script? Thanks for the great content.
@sunknudsen
@sunknudsen 2 жыл бұрын
Good question… my gut feeling would be to uninstall app using Homebrew. That said, there are pros and cons to both options. If one uninstalls app using app-clearner, I believe app will still be visible in Homebrew. If one uninstalls app using Homebrew, depending on uninstall script, uninstall might not be “clean”.
@julianmahler2388
@julianmahler2388 11 ай бұрын
How do you calculate the amount of $$$ it would cost to crack a password/passphrase?
@vineetchopra2446
@vineetchopra2446 2 жыл бұрын
Hi sun. I am from India 🇮🇳. I like your videos. The firefox video was the first one I watched. As I have an Android phone and pc which is having windows 10. So can you make any video how to secure Android and window. I tried to disable every setting on my android but the setting app of phone have all the permissions and I can't even disable them. So can you give me any suggestions.
@GabrielHenrique-jl2ex
@GabrielHenrique-jl2ex Жыл бұрын
Where I can buy dices like that? I just found on eBay but I'm not sure if they are original or just replica
@sunknudsen
@sunknudsen Жыл бұрын
Hey Gabriel, typically they can be found in board game stores… or perhaps on Amazon?
@greger589
@greger589 2 жыл бұрын
I use a storyline where each word is in a different languages
@JohnSmith-zl8rz
@JohnSmith-zl8rz 5 ай бұрын
What if a computer take that list and make millions of combinations to guess the password, a Quantum computer or AI ?
@MikeHunt-rw4gf
@MikeHunt-rw4gf 2 жыл бұрын
Algorithm.
@notabene9630
@notabene9630 2 жыл бұрын
I know it's not related to the subject but as a french speaker, using the pronoun "one" as an undefinite pronoun is very painful to process for my brain
@sunknudsen
@sunknudsen 2 жыл бұрын
I agree… took me some getting used to. What I appreciate of “one” is it isn’t incriminating by design.
Diceware & Passwords - Computerphile
10:56
Computerphile
Рет қаралды 304 М.
Why I no longer use a VPN (most of the time) and nor should you
11:25
Sun Knudsen
Рет қаралды 1,1 МЛН
Khó thế mà cũng làm được || How did the police do that? #shorts
01:00
THE POLICE TAKES ME! feat @PANDAGIRLOFFICIAL #shorts
00:31
PANDA BOI
Рет қаралды 24 МЛН
MEU IRMÃO FICOU FAMOSO
00:52
Matheus Kriwat
Рет қаралды 45 МЛН
100+ Linux Things you Need to Know
12:23
Fireship
Рет қаралды 150 М.
ProtonMail doesn’t encrypt all emails “by design”
9:26
Sun Knudsen
Рет қаралды 23 М.
Have You Been Pwned? - Computerphile
10:59
Computerphile
Рет қаралды 478 М.
How to use passphrases with ColdCard | The ColdCard Guides
19:38
Southern Bitcoiner
Рет қаралды 4,7 М.
This Trick Will Make Your Passwords Even More Secure
5:20
Gary Explains
Рет қаралды 21 М.
Coding a Web Server in 25 Lines - Computerphile
17:49
Computerphile
Рет қаралды 326 М.
Why 1Password is the best proprietary password manager
27:20
Sun Knudsen
Рет қаралды 84 М.
Khó thế mà cũng làm được || How did the police do that? #shorts
01:00