Home > All, Security Issues > Password is too weak…

Password is too weak…

It’s good to see providers beginning to rethink their password policies. But this from BT?

BT password

Password paranoia?

This was the rejected password:

Tfi]XoDS|?RQc|L1}Te(BvX>o

I cannot begin to imagine what a strong password would look like…

About these ads
Categories: All, Security Issues
  1. Elviswayne
    May 11, 2013 at 7:03 pm | #1

    Same has been happening to me on Yahoo. I cant access my account. Keep getting password too weak even when i use random letters + numbers, +symbols. Just kinda confuse on Yahoo mail.

  2. Pauletta
    February 6, 2013 at 6:45 pm | #2

    So did you resolve the problem? I am having the same problem with Yahoo.
    Yahoo keeps rejecting perfectly good and strong passwords with the message “password is too weak.” How did you solve the problem?

    • February 7, 2013 at 8:27 am | #3

      Yes – see comment stamped ‘September 12, 2012 at 3:58 pm’ below.

      • tehnicaorg
        February 7, 2013 at 8:29 am | #4

        #4, #5 make up your mind :D . Soon You’ll say it’s six. Or seven.

      • February 7, 2013 at 8:32 am | #5

        I noticed that, too – so I changed it to the time-stamp. Seems like this theme automatically renumbers the comments. :-)

  3. Iyke
    September 14, 2012 at 12:31 am | #6

    I wondera, I am experiencing same now. I wonder what they actually

  4. Andrei
    September 12, 2012 at 2:54 pm | #7

    Was it because you pasted it and not typed it?

    • September 12, 2012 at 3:58 pm | #8

      No. The post is slightly tongue in cheek, although exactly as it happened. My password was generated by a password manager. But if you look closely, you’ll see it includes a couple of vertical bars that are not specifically allowed by BT’s software. That, I suspect, is why it was rejected.

      However, even without those vertical bars it would still have been rejected because mine is 20+ characters in length while BT allows only a maximum of 16 characters.

      I know that some sites don’t allow pasting (such as HMRC, for example), but that wasn’t the problem in this instance.

      I wondered if I was being unfair to BT, but then I decided that if their coders are too lazy or sloppy to write the correct error message, they deserve to be slagged off.

      • Andrei
        September 12, 2012 at 4:05 pm | #9

        At least with this visible password limitations (charset, length) you know they won’t store it hashed :) .

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Connecting to %s

Follow

Get every new post delivered to your Inbox.

Join 57 other followers