Posted March 08, 2016
![sunshinecorp](https://images.gog.com/0ed013fd363e74b82b3aa32d52ab5b3968efe937b6ccd9f837c5cfce2801f62f_forum_avatar.jpg)
sunshinecorp
Ordained Dudeist
Registered: Jul 2011
From Greece
![blotunga](https://images.gog.com/bd1dd49e8b8de444fa1bf1d00e469b404b26acd6a37d4780cdaf3307642c90c2_forum_avatar.jpg)
blotunga
GrumpyOldGamers.CyringOutMiserably
Registered: Apr 2012
From Other
Posted March 08, 2016
![avatar](http://images.gog.com/e042d6b70bbe50b6e96c3a20ddbd5bcc5299ae09e14b1f2ad1a305ada1fe5e08_avm.jpg)
![Tallima](https://images.gog.com/710f0c92869394dc1567fde6f6a337889b9fd6b4892d0c8a824276d30058d56d_forum_avatar.jpg)
Tallima
TreasureHunting!
Registered: Apr 2010
From United States
Posted March 08, 2016
That's dumb. Just email them.
SUBJECT: Fire
Dear sir or madam,
I am writing to inform you of a fire that has broken out on the premises of...
wait. Maybe some thing more urgent:
Fire! Fire! Help!
That episode actually reminds me of the highly ridiculous event that happened in the US where a student got in trouble for assisting a student instead of waiting for the nurse to answer an email about how to proceed with a student on the floor having an asthma attack.
https://www.washingtonpost.com/news/morning-mix/wp/2016/01/24/texas-eight-grader-suspended-for-rescuing-classmate-during-asthma-attack/
SUBJECT: Fire
Dear sir or madam,
I am writing to inform you of a fire that has broken out on the premises of...
wait. Maybe some thing more urgent:
Fire! Fire! Help!
That episode actually reminds me of the highly ridiculous event that happened in the US where a student got in trouble for assisting a student instead of waiting for the nurse to answer an email about how to proceed with a student on the floor having an asthma attack.
https://www.washingtonpost.com/news/morning-mix/wp/2016/01/24/texas-eight-grader-suspended-for-rescuing-classmate-during-asthma-attack/
![Maxvorstadt](https://images.gog.com/8c6c6b0d155eb3f5f7d6d59452493412798e0147a6667a4fc522b6073e5db85d_forum_avatar.jpg)
Maxvorstadt
I is more stronger than Darth Vapour!
Registered: Apr 2014
From Germany
Posted March 08, 2016
![avatar](http://images.gog.com/e042d6b70bbe50b6e96c3a20ddbd5bcc5299ae09e14b1f2ad1a305ada1fe5e08_avm.jpg)
![ShadowOwl](https://images.gog.com/6d57aba9b790ef4c26543b140dd97b97ced955191b7b488ee668fec366b8cd08_forum_avatar.jpg)
ShadowOwl
DIVE DIVE DIVE!
Registered: Apr 2009
From Germany
![tremere110](https://images.gog.com/c013381d0ab1370b711492effd5f5847de1f09d1ef74ace3868a138156afd15f_forum_avatar.jpg)
tremere110
Hmmm...
Registered: Mar 2011
From United States
![RWarehall](https://images.gog.com/5a295930dca4de59c58ef5e8a63fd73ac3175e7ad7e7dda5699ca7accc01596c_forum_avatar.jpg)
RWarehall
Ja'loja!
Registered: Jan 2012
From United States
Posted March 08, 2016
Brute forcing should NEVER work. Any system that doesn't lock an account and send a notification after a certain number of failed attempts is a bad system.
![Titanium](https://images.gog.com/b08330d9ad86b8acfecfac899ee6502e93c5ccb685c3e30ecd423b9d4ba38a40_forum_avatar.jpg)
Titanium
The iron-y
Registered: Nov 2008
From Slovenia
![skeletonbow](https://images.gog.com/3a6ffc77c3410e96ecd2e5775b3fed422e1acdd05bbf19cd366e44ae40b03b34_forum_avatar.jpg)
skeletonbow
Galaxy 3 when?
Registered: Dec 2009
From Canada
Posted March 08, 2016
That's strange. For the record just as a data point, I use a password on GOG that is 20 characters and includes both upper and lower case, numbers and punctuation randomly generated by software and it works fine. I have not changed my password in a while however so it is possible bugs could be introduced or something but it seems rather unlikely. If you continue to have problems, contact GOG support.
![WinterSnowfall](https://images.gog.com/012b5223b56b6a969af8ff9c131cdb39a6cd6dd1bc99741cfd9b2f9094b5a492_forum_avatar.jpg)
WinterSnowfall
Bastard Lunatic
Registered: Apr 2012
From Romania
![rtcvb32](https://images.gog.com/77665aa6affc77960e6b537ee348222af4d3fecc684f14d10088eae491b41e33_forum_avatar.jpg)
rtcvb32
echo e.lolfiu_fefiipieue|tr valueof_pi [0-9]
Registered: Aug 2013
From United States
Posted March 08, 2016
![avatar](http://images.gog.com/d8d745a8ef7b2d454063011b96765fee3d2f7680752d560fe0160915b7b060d4_avm.jpg)
I agree though, overtly strong passwords with a 3-5 attempt system before locking you down is absurd. Reminds me of working at Fred Meyers, and the mandatory 3 month new password system where you couldn't reuse the last 10 passwords, making you either append to the password with something stupid (like a 1) or come up with a different password.
![HereForTheBeer](https://images.gog.com/a57f0bf54f93d6b7efe2ae73abc89cbd222c7bc556b25a2c8b0b32e12b8a9f75_forum_avatar.jpg)
HereForTheBeer
Positive Patty
Registered: Oct 2009
From United States
![johnnygoging](https://images.gog.com/1291b8b5ab98bde2f79fca0dfbeb83f9d0e36a038a1a269dafb58d4da98f40ae_forum_avatar.jpg)
johnnygoging
I was told there would always be a bigger fish
Registered: Jun 2013
From Canada
Posted March 09, 2016
![avatar](http://images.gog.com/f3d51f63f3a3ac710d93263dc37481294e26e4b66e830e5a445708ae99f3af9e_avm.jpg)
Tried using a 20 numercial password with numbers - Password not safe
Tried using 10 and 5 numbers - Password not safe
-.-
After 20 mins of trying i made something short and random...it accepted!
#Logic
you are trying to create a password that a machine would have a hard time guessing, a machine that is aided by massive databases of both stored captured passwords and heuristic rulesets for word and character probability.
l0ngl1veth3k1ngPOTATOES is a shit password not because a human could easily guess it but because a machine could. maybe not one that long but it is still on the weaker side of things. random and write it on paper. memorise the ones you use most.
![hyperagathon](https://images.gog.com/42ef9d2cf5734f885cc1576cf9294be48c83c9341a6c62e3fbe022e103ea8705_forum_avatar.jpg)
hyperagathon
Bear it All
Registered: Aug 2010
From Croatia
Posted March 09, 2016
![avatar](http://images.gog.com/f3d51f63f3a3ac710d93263dc37481294e26e4b66e830e5a445708ae99f3af9e_avm.jpg)
Tried using a 20 numercial password with numbers - Password not safe
Tried using 10 and 5 numbers - Password not safe
After 20 mins of trying i made something short and random...it accepted!
#Logic
![avatar](http://images.gog.com/acd5d3494f9b76e52349599e0f9049af8e6ec31132ea90dbbbb0f4934f94b957_avm.jpg)
![dtgreene](https://images.gog.com/b13211519e73aa06f8273a50b02964660502da1a057e7466ad747d57469678b9_forum_avatar.jpg)
dtgreene
vaccines work she/her
Registered: Jan 2010
From United States
Posted March 09, 2016
![avatar](http://images.gog.com/d8d745a8ef7b2d454063011b96765fee3d2f7680752d560fe0160915b7b060d4_avm.jpg)
![avatar](http://images.gog.com/e042d6b70bbe50b6e96c3a20ddbd5bcc5299ae09e14b1f2ad1a305ada1fe5e08_avm.jpg)
1. Get root access to server, and hence to the shadow password file.
2. Brute force the passwords in parallel. There is a good chance that at least one of them has an easy password to crack. We now have a username/password combination that is valid on this server.
3. Try the username/password combination on other servers. We have now gained access to the other server, and hence to that user's personal details. This has a good chance of working because people tend to reuse passwords on multiple sites (and is why you should use a different password for every site).