Lorrie Faith Cranor: What’s wrong with your pa$$w0rd?
Lori Fejt Krejnor (Lorrie Faith Cranor): Šta nije u redu sa vašom $ifr0m?
At Carnegie Mellon University, Lorrie Faith Cranor studies online privacy, usable security, phishing, spam and other research around keeping us safe online. Full bio
Double-click the English transcript below to play the video.
inženjeringa na Univerzitetu Karnegi Melon
professor here at Carnegie Mellon,
usable privacy and security,
sistema privatnosti i bezbednosti.
vole da mi daju primere
zbog računarskih sistema,
privatnosti i bezbednosti.
o čemu mnogo slušam.
jednu stvarno dobru šifru
Ali onda su promenili stvari
od najmanje osam karaktera,
character more than three times,
isti karakter više od tri puta,
da se pojavljuju reči iz rečnika.
"Pa znate šta?
i odlučila sam da razgovaram
za naše računarske sisteme
of Standards and Technology
za standarde i tehnologiju
neke kvalitetne podatke
choose under particular rules.
pod određenim pravilima.
are understandably reluctant
ali naša istraživačka grupa
za kvalitetnim podacima o šiframa.
for good password data.
neke dobre podatke
profesorima i zaposlenima,
o njihovim šiframa.
Da li ima simbola?
to što ste morali
write their password down,
more susceptible to attackers.
32 različita simbola,
interesantno ispitivanje,
idealno za istraživanje
za koje će ljudi
Amazon Mechanical Turk,
Amazon Mechanical Turk,
deset centi, nekoliko dolara
i odgovarajući na još jednu anketu.
brdo različitih smernica
malo slovo, cifru, simbol
koje smo probali se zove Basic16,
to have at least 16 characters.
najmanje 16 karaktera.
da se provale ove šifre
pronaći neki podaci
u to kako loši momci
their stolen password list.
na svom spisku ukradenih šifri.
svaku šifru po redu.
da neko zapravo ima.
verovatno imaju ove šifre.
5000 šifri koje smo sakupili
takođe prilično jake.
odgovore u anketama
just say long passwords.
nego prosto reći "duge šifre".
istraživanja koja su u toku
treba da uključimo
da imaju jače šifre
istraživanje i saznamo
u obliku zeca koji pleše.
da ste dobro obavili posao,
taj pozitivan komentar,
boljih šifri je možda
from a couple of years ago,
od pre par godina
da sprovedemo istraživanje
da radim istraživanje o šiframa
smo opet koristili Mechanical Turk,
tako lako za pamćenje."
that's sort of sentence-like.
sa običnim šiframa,
pick random passwords,
nasumično birali reči
ali kao što možete videti,
što je moguće izgovoriti
u ovom istraživanju bilo je
dok su ih kucali.
baš najbolje kao šifre.
approach work even better.
taj pristup još efikasnijim.
računar za naše istraživanje.
security office at Carnegie Mellon
za bezbednost podataka na Karnegi Melonu
have everybody's real passwords.
da dobijemo svačiju pravu šifru.
u zaključanoj prostoriji
studija tamo pozadi
school of computer science
ljudi sa poslovnih studija.
the Carnegie Mellon passwords
šifre sa Karnegi Melona
na Mechanical Turku
valjanost naše metode
prošle godine
u Karnegi Melon umetničkoj akademiji.
videćete da ima takođe
"Zašto su majmuni toliko popularni?"
a monkey in their password.
reč "majmun" u svoju šifru.
podsećaju na reč "šifra"
na stvari koje nas čine srećnim
(Aplauz)
ABOUT THE SPEAKER
Lorrie Faith Cranor - Security researcherAt Carnegie Mellon University, Lorrie Faith Cranor studies online privacy, usable security, phishing, spam and other research around keeping us safe online.
Why you should listen
Lorrie Faith Cranor is an Associate Professor of Computer Science and of Engineering and Public Policy at Carnegie Mellon University, where she is director of the CyLab Usable Privacy and Security Laboratory (CUPS) and co-director of the MSIT-Privacy Engineering masters program. She is also a co-founder of Wombat Security Technologies, Inc. She has authored over 100 research papers on online privacy, usable security, phishing, spam, electronic voting, anonymous publishing, and other topics.
Cranor plays a key role in building the usable privacy and security research community, having co-edited the seminal book Security and Usability and founded the Symposium On Usable Privacy and Security (SOUPS). She also chaired the Platform for Privacy Preferences Project (P3P) Specification Working Group at the W3C and authored the book Web Privacy with P3P. She has served on a number of boards, including the Electronic Frontier Foundation Board of Directors, and on the editorial boards of several journals. In 2003 she was named one of the top 100 innovators 35 or younger by Technology Review.
Lorrie Faith Cranor | Speaker | TED.com