Expert Flouts Conventional Wisdom Regarding Passwords

MOUNTAIN VIEW, Calif. — Internet security expert David Schneier, author and founder of California web security firm Counterpane, has suggested that writing down Internet passwords might not be the huge taboo it once was, considering the number of passwords the average surfer needs to juggle.

Schneier, author of “Applied Cryptography” and “Beyond Fear,” a book about personal safety in the digital age, echoed the recent suggestion by Microsoft security chief Jesper Johansson that keeping a written record of passwords allows users to maintain the complexity required to keep hackers from guessing oft-used or too-simple login information.

"People can no longer remember passwords good enough to reliably defend against dictionary attacks,” Schneier wrote in his newsletter, Cryptogram. “[Users] are much more secure if they choose a password too complicated to remember and then write it down."

Schneier recommends keeping passwords in places previously frowned upon, like one’s wallet, but obfuscating certain key elements, like transposing letters or switching descriptions to foil would-be thieves.

These recommendations come on the heels of Schneier’s rejection of “two-factor” authentication, a security feature that has been around since the 1980s but that is gaining ground due to its use by America Online and some banks.

Two-factor authentication is being marketed as a failure-proof security system, Schneier said, but only in the case of certain types of hacks.

Like writing down passwords, Schneier said, keeping authentication simple and smart might be better than making complex systems that fail big when they are finally compromised.

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

EU Court: France Can Require Foreign Sites to Implement AV

The European Union’s Court of Justice ruled on Tuesday that France may require pornographic websites based in other EU states to implement age verification in accordance with French law, as long as France follows EU electronic commerce rules.

LoyalFans Announces 'Group Walkthrough' Online Event Series

LoyalFans has announced its new “Group Walkthrough” online event series for creators, taking place every Tuesday and Thursday.

Bree Sky Officially Launches 'ThirstChat' Fan Platform

Creator and entrepreneur Bree Sky has debuted her new fan platform, ThirstChat.

Lawsuit Alleging Meta Pirated VMG Content Will Move Forward

A U.S. district court on Thursday rejected Facebook parent company Meta’s motion to dismiss a suit by Vixen Media Group owner Strike 3 Holdings, which accuses Meta of pirating VMG content to train its artificial intelligence models.

Playboy Partners With Creator Platform Tango

Playboy has partnered with creator platform Tango, introducing Playmates to the livestreaming service.

Anti-Porn Senator Introduces Federal Age Verification Bill

U.S. Senator Jim Banks of Indiana, who last month urged the Department of Justice to ramp up obscenity prosecutions, on Wednesday introduced a bill that would make age verification by adult websites federal law.

AEBN Publishes Popular Searches by Country for April, May

AEBN has released the list of popular searches from its straight and gay theaters, by country, for April and May.

Ondato Joins Pineapple Support as Sponsor

Age and identity verification company Ondato has joined the ranks of over 70 adult businesses and organizations committing funds and resources to Pineapple Support.

2026 XBIZ Amsterdam Website Now Live, Registration Opens

XBIZ is pleased to announce that the website for its annual European conference, XBIZ Amsterdam, is now live.

MyMember.site Integrates FSC's 'PrivateAV' Age Verification Solution

MyMember.site has integrated Free Speech Coalition's PrivateAV age verification tool into its website-building platform.

Show More