HACKER Q&A
📣 zinekeller

How do I make a reasonable pronouncable password for a “weak” system?


Note: I do not have any control on the government-operated website (and I won't be surprised if it's hacked already), but since I am required to use it I haven't have any choice here (and I am actually inquiring the ministry why it is a weak system).

It has a maximum of 20 characters (and minimum of four (four!) characters) and is only case-insensitive alphanumeric. Also, it should be pronounceable since this is apparently used also as the password for their hotline services!

How do I proceed with this? Should I just whip out a random password generator and pronounce it letter-by-letter (or number-by-number) or should I make it vaguely pronounceable?


  👤 simonblack Accepted Answer ✓
Why not something simple like "mycarisa2018ford"?

👤 thanatos519
Unfortunately "correcthorsebatterystaple" is too long.

https://xkcd.com/936/

... but if the constraints are 4-20 alphanumeric characters case-insensitive pronounceable, then a sequence of words would work great.