Mark Zuckerberg's Twitter and Pinterest Accounts Hacked from Linkedin Breach
twitter.com
twitter.com
That might imply that "dadada" is either;
1. A password he actually uses on real accounts
2. Its his 'default' throwaway password on places he doesnt really care about.
Either way - people (hackers) will try and use "dadada" on any/all other Mark's possible signin on any/all other websites - who knows how many times he repeated this.
By the way, I think most of us realize pg and Mark are on very good terms. Way back, I'm thinking 6'ish years back, Facebook and YC had official connections (YC startups would get access to some of Facebook's tools or some such thing, I don't fully remember. But I think YC reduced the profile of this connection because HN went all up in arms over this back then.
Three "large" sites that he didn't use or care about. I have a twitter account that I posted one tweet on in 2013. The password is "mystupidpassword" -- have at it, hackers.
Not once in my life do I recall ever setting up a LinkedIn account. Ever. But somehow, I have one. :/
If you stole a database of hashed passwords, you could focus on 2-3 "VIP" clients/celebrities of that database, and despite the computational cost, try and crack that hash.
Knowning that if/when you crack the hash, you could potentially use that password on other logins that VIP might use, prior to anyone knowing.
edit: not sure why I was downvoted - this answers the question.
It's nowhere near as easy as you hand wavingly claim it is. Last time I tried the one everyone said to use had been bought and everyone was saying don't use it, but the other alternative didn't work on mobiles (or something, I forget) properly. I even had one installed for a bit but it never seemed to work so I gave up.
It's still a broken ux with a non-trivial cost of using it.
I know I should use it, I know when I get hacked I will regret it. I do use 2 factor for the important stuff, because it works and is actually easy, unlike the bolted on clunkiness of password managers.
On desktop it could not be easier, I hit command-\ and it autofills the username and password for the current site I am using and if I have more than one login for that site there's a list of logins to use. You can activate it the other way around too by choosing a site from the password manager and it will open the site in your browser, auto-fill the login and then submit it so that you're ready to go.
I would still use this setup even if my passwords were all simple to remember like yours are.
We're talking about accounts that are years old, not something he set up last week.
1) Weird browsers like adblock for android
2) Coffee shop browsers
3) Borrowing someone's laptop browser
Why would I do all of that to make my pinterest password more secure? I think I have logged in twice.
What's life like in 1998 btw?
Huge PITA for little to no gain. If people want my pinterest password, have at it.
I don't even know what that means.
> Or at a Coffee shop?
What kind of coffee shop are you going to that you aren't using your own device?
> Or on my Mom's laptop?
Why does she need your password? Regardless, if she syncs with your account it will work fine.
> Huge PITA
It really isn't if you use the right tools.
> little to no gain
Secure, easy management of passwords is little to no gain?
Is the article claiming that ALL passwords are known now?
I've never used a password manager besides keychain+safari (across several devices), and I just don't get the issues people claim to have.
If third party password managers are so terrible why hasn't chrome/ff/etc got a better built in password manager? Or if they do, why don't people use them?