• HereIAm@lemmy.world
    link
    fedilink
    arrow-up
    3
    ·
    11 months ago

    Kinda yes, but really no. If they assume there is always a comma, but if you add it after you’ve generated whatever password you’ve chosen you’re still making it harder for them. You haven’t compromised on the length, and now they need to figure out where in the rest of your random password the comma goes.

    • wavebeam@lemmy.world
      link
      fedilink
      arrow-up
      1
      arrow-down
      3
      ·
      11 months ago

      that’s reducing entropy even more. by assuming everything between two commas is a password, they would have a shockingly high hit rate.

      • HereIAm@lemmy.world
        link
        fedilink
        arrow-up
        3
        ·
        11 months ago

        What? If you’re talking about an already leaked list of passwords in a CSV it doesn’t matter?