DEV Community

Discussion on: What does it take to create a strong password?

Collapse
 
michaelphipps profile image
Phippsy

The original strong password recommendations made by Bill Burr back 2003 need to be tossed into molten lava.

Expiring passwords is a bad design that causes password fatigue in users. Ultimately users create Pa$$w0rd1, Pa$$w0rd2, Pa$$w0rd3. This causes more requests for password resets because they can't remember what they did, and doesn't actually improve security.

Microsoft actually stopped expiring passwords in Windows 10
zdnet.com/article/microsoft-says-w...