'Password rules are bullsh*t!' Stackoverflow Jeff's rage overflows


Well said. But I have to say, I'm a techie, and I don't care (that much). As far as I'm concerned, my password strength is selected to stop someone easily guessing my password, or working it out from readily available information. If someone is going to get hold of the encrypted password DB and make a concerted effort to crack it, assume they're going to succeed, and look to other layers of security for protection. Otherwise it's just stupid; with the continually advancing power of CPUs and GPUs, do we just keep recommending longer and longer passwords? Reductio ad absurdum, people.

