2009-07-24, 01:06 PM
Kortestanov Wrote:Why would I waste 30 mins of my life to learn something that doesn't help me at all? Theres no "smaller" chance, because even with a not very complicated password that doesnt resemble any word your chances to get hacked are zero, considering you don't have a keylogger, didn't give your password away and nexon didn't get hacked. It's practically impossible to brute force a password over the internet... Eos took over 10 hours to brute force something with 65,000 possibilities. Even an extraordinary weak 6 characters password with only non captial letters has over 244,140,625 possibilities, which is equal to about 35,000 hours of brute-forcing. See where I'm getting? It's not possible to crack passwords over the internet. Period. Even if your password IS a dictionary word (which is the weakest type of passwords), dictionary attack lists are usually 1.5m words long. thats equal to almost a week of attacking. And all of these calculations are not even including the 10 minutes ban you get every 5 tries.
Dictionary attacks are most effective against the whole database of logins and passwords, NOT against a single person. (the person that coined this term had a success rate of 40%) To use a dictionary attack against a single user is just plain stupid and everyone would laugh at you.
It's definitely possible to crack passwords over t3h intarwebs. Check out Twitter: some hacker managed to guess an admin's email account password (I dunno how, but he did) and managed to wreak havoc. All things considered, if someone's really desperate, they'll even try to guess "zbstuv24". Yes, that was seriously someone's password.

