Subject: | May wish to link to this article |
Some security people seem to think that this approach to passwords is ill advised and may leave you vulnerable to different kinds of attacks.
Though it seems *purely* random phrases like the one generated by this module are indeed stronger than idiomatic sentence-like phrases, and you can swing that to your advantange. =)
Also, obvious thing to mention: If this tool becomes known, and an attacker suspects you're using it to make your password, or your attacker is attacking a website they suspect there would be a rewarding percentage of users using this system, they may just use this tool to seed their dictionary, which would prove a MUCH easier attack compared to plain brute force.