Jump to content

Mwo Launcher Allow For Copy+Paste


12 replies to this topic

#1 Daemoroth

    Rookie

  • 9 posts
  • LocationAustralia

Posted 06 January 2013 - 05:32 AM

A small but really urgent request - please allow for username/password to be pasted into the launcher when logging in.

I use a password safe, and all my passwords are very lengthy, random jumbles of characters and symbols, and since the launcher doesn't allow you to copy and paste, it makes logging in a major pain in the #$@. This means that when I'm on the fence on what to play, I tend to skip over MWO for other games that are more easily accessible.

#2 H3rtz

    Member

  • PipPipPip
  • Giant Helper
  • 70 posts
  • LocationUK

Posted 06 January 2013 - 07:53 AM

Storing any passwords in anything other than your head is insecure.

The comic in the below link rounds this subject off nicely.

https://xkcd.com/936/

#3 Gibbon

    Rookie

  • 1 posts

Posted 24 July 2013 - 04:22 AM

The entropy of a random jumble of ASCII characters is much higher than a 4 word diceware password (which the XKCD comic refers to).

Think of diceware as an alphabet of 7000-8000 words, either a set list if you've used a utility, or common vocabulary - your password is only four 'units' long.

You would need 10 diceware words to match a 20 character random ASCII password. Password vaults generate very secure passwords - the only risk is that you now have a single point of failure at your machine. (but most access attempts won't be from your machine, so who cares?)

https://en.wikipedia...andom_passwords

#4 Modo44

    Member

  • PipPipPipPipPipPipPipPipPip
  • Bad Company
  • 3,559 posts

Posted 24 July 2013 - 04:35 AM

Mix the common words' characters in some simple way only you know.

#5 Belorion

    Member

  • PipPipPipPipPipPipPipPipPipPip
  • Legendary Founder
  • Legendary Founder
  • 5,469 posts
  • LocationEast Coast

Posted 24 July 2013 - 05:07 AM

View PostH3rtz, on 06 January 2013 - 07:53 AM, said:

Storing any passwords in anything other than your head is insecure.

The comic in the below link rounds this subject off nicely.

https://xkcd.com/936/


The logic in the comic is flawed. Both of those are insecure, you shouldn't use real words ever. They are subject to dictionary attacks that greatly reduce time to crack using brute force methods. This includes the use of words where letters are replaced with numbers. L00k is just as bad as Look.

A better tactic would be to come up with a phrase, and use the first letters in the phrase with a mix of letters and non-numeric, non-alphabetic characters.

1 red bike I ride! Green bike 12 @ home

would be
1rbIr!Gb12@h

#6 Mechteric

    Member

  • PipPipPipPipPipPipPipPipPipPip
  • Overlord
  • Overlord
  • 7,308 posts
  • LocationRTP, NC

Posted 24 July 2013 - 05:38 AM

Your clipboard is not secure.

Edited by CapperDeluxe, 24 July 2013 - 05:38 AM.


#7 Bendak

    Member

  • PipPipPipPipPipPip
  • Overlord
  • Overlord
  • 213 posts

Posted 24 July 2013 - 06:08 AM

You'd be better off requesting implementation of two factor authentication via a smartphone app(or similar device).

#8 Spyder228

    Member

  • PipPipPipPipPip
  • The Butcher
  • The Butcher
  • 131 posts

Posted 24 July 2013 - 06:10 AM

Can we just get copy/paste in chat at least? I was going out of my mind trying paste a TS3 server address the other day.

#9 Belorion

    Member

  • PipPipPipPipPipPipPipPipPipPip
  • Legendary Founder
  • Legendary Founder
  • 5,469 posts
  • LocationEast Coast

Posted 24 July 2013 - 08:12 AM

Baby steps... backspace repeat first then past.

#10 Roland

    Member

  • PipPipPipPipPipPipPipPipPipPip
  • 8,260 posts

Posted 24 July 2013 - 08:26 AM

Quote

The logic in the comic is flawed. Both of those are insecure, you shouldn't use real words ever. They are subject to dictionary attacks that greatly reduce time to crack using brute force methods.

Not when you use multiple real words, because it's no longer just a matter of checking against words in a dictionary. It becomes a matter of checking against every combination of all the words in the dictionary.

It's not a diceware password, because you're not limited to a set of words in a list that can be picked via a dice roll. You're using a combination of any words in your language.

Given that English has approximately 900,000 words in it, a combination of 4 randomly selected words in english is going to result in a password that has 900,000^4 combinations. You are not going to crack that via brute force. Even if you restricted it to a more common subset of the english language, say the average person's vocabulary size of 20,000 words... you're still talking about a total set of passwords which would require over 5 million years to exhaustively search, at a rate of 1000 tries per second.

The reason it's more complex is because the alphabet being used, where each "letter" is a word, is orders of magnitude larger than the ASCII alphabet which is only 256 symbols.

#11 3rdworld

    Member

  • PipPipPipPipPipPipPipPipPip
  • 3,562 posts

Posted 24 July 2013 - 08:28 AM

There is nothing of monetary value in my account. You can't transfer it or trade it.

Other than to troll me, what would you possibly get out of hacking my account?

#12 Roland

    Member

  • PipPipPipPipPipPipPipPipPipPip
  • 8,260 posts

Posted 24 July 2013 - 08:41 AM

View Post3rdworld, on 24 July 2013 - 08:28 AM, said:

There is nothing of monetary value in my account. You can't transfer it or trade it.

Other than to troll me, what would you possibly get out of hacking my account?

Sell all your mechs, and buy nothing but machine gun spiders and millions of tons of machine gun ammo.

#13 Volthorne

    Member

  • PipPipPipPipPipPipPipPip
  • Elite Founder
  • Elite Founder
  • 1,929 posts
  • LocationCalgary, Canadia

Posted 24 July 2013 - 08:57 AM

View PostRoland, on 24 July 2013 - 08:41 AM, said:

Sell all your mechs, and buy nothing but machine gun spiders and millions of tons of machine gun ammo.

I'd be more worried about someone selling all my XL engines.





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users