<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://www.explainxkcd.com/wiki/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=195.56.58.169</id>
		<title>explain xkcd - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://www.explainxkcd.com/wiki/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=195.56.58.169"/>
		<link rel="alternate" type="text/html" href="https://www.explainxkcd.com/wiki/index.php/Special:Contributions/195.56.58.169"/>
		<updated>2026-06-19T14:57:25Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.30.0</generator>

	<entry>
		<id>https://www.explainxkcd.com/wiki/index.php?title=Talk:936:_Password_Strength&amp;diff=48154</id>
		<title>Talk:936: Password Strength</title>
		<link rel="alternate" type="text/html" href="https://www.explainxkcd.com/wiki/index.php?title=Talk:936:_Password_Strength&amp;diff=48154"/>
				<updated>2013-08-30T09:01:18Z</updated>
		
		<summary type="html">&lt;p&gt;195.56.58.169: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;You still have to vary the words with a bit of capitalization, punctuation and numbers a bit, or hackers can just run a dictionary attack against your string of four words. '''[[User:Davidy22|&amp;lt;u&amp;gt;{{Color|purple|David}}&amp;lt;font color=green size=3px&amp;gt;y&amp;lt;/font&amp;gt;&amp;lt;/u&amp;gt;&amp;lt;font color=indigo size=4px&amp;gt;²²&amp;lt;/font&amp;gt;]]'''[[User talk:Davidy22|&amp;lt;tt&amp;gt;[talk]&amp;lt;/tt&amp;gt;]] 09:12, 9 March 2013 (UTC)&lt;br /&gt;
&lt;br /&gt;
No you don't.  Hackers cannot run a dictionary attack against a string of four randomly picked words.&lt;br /&gt;
Look at the number of bits displayed in the image: 11 bits for each word.&lt;br /&gt;
That means he's assuming a dictionary of 2048 words, from which each word is picked randomly.&lt;br /&gt;
The assumption is that the cracker knows your password scheme.&lt;br /&gt;
[[Special:Contributions/86.81.151.19|86.81.151.19]] 20:17, 28 April 2013 (UTC)&lt;br /&gt;
Willem&lt;br /&gt;
&lt;br /&gt;
Sometimes this is not possible. (I'm looking at you, local banks with 8-12 character passwords and PayPal) If I can, I use a full sentence. A compound sentence for the important stuff. This adds the capitalization, punctuation and possibly the use of numbers while it's even easier to remember then Randall's scheme. I think it might help against the keyloggers too, if your browser/application autofills the username filed, because you password doesn't stand out from the feed with being gibberish. [[Special:Contributions/195.56.58.169|195.56.58.169]] 09:01, 30 August 2013 (UTC)&lt;/div&gt;</summary>
		<author><name>195.56.58.169</name></author>	</entry>

	</feed>