• Log InLog In
  • Register
Liquid`
Team Liquid Liquipedia
EDT 09:31
CEST 15:31
KST 22:31
  • Home
  • Forum
  • Calendar
  • Streams
  • Liquipedia
  • Features
  • Store
  • EPT
  • TL+
  • StarCraft 2
  • Brood War
  • Smash
  • Heroes
  • Counter-Strike
  • Overwatch
  • Liquibet
  • Fantasy StarCraft
  • TLPD
  • StarCraft 2
  • Brood War
  • Blogs
Forum Sidebar
Events/Features
News
Featured News
Classic Games #3: Rogue vs Serral at BlizzCon7[ASL20] Ro16 Preview Pt1: Ascent10Maestros of the Game: Week 1/Play-in Preview12[ASL20] Ro24 Preview Pt2: Take-Off7[ASL20] Ro24 Preview Pt1: Runway13
Community News
Weekly Cups (Sept 1-7): MaxPax rebounds & Clem saga continues23LiuLi Cup - September 2025 Tournaments3Weekly Cups (August 25-31): Clem's Last Straw?39Weekly Cups (Aug 18-24): herO dethrones MaxPax6Maestros of The Game—$20k event w/ live finals in Paris76
StarCraft 2
General
[G] How to watch Korean progamer Streams. #1: Maru - Greatest Players of All Time Weekly Cups (Sept 1-7): MaxPax rebounds & Clem saga continues Classic Games #3: Rogue vs Serral at BlizzCon Team Liquid Map Contest #21 - Presented by Monster Energy
Tourneys
RSL: Revival, a new crowdfunded tournament series LiuLi Cup - September 2025 Tournaments Maestros of The Game—$20k event w/ live finals in Paris WardiTV Mondays Sparkling Tuna Cup - Weekly Open Tournament
Strategy
Custom Maps
External Content
Mutation # 490 Masters of Midnight Mutation # 489 Bannable Offense Mutation # 488 What Goes Around Mutation # 487 Think Fast
Brood War
General
alas... i aint gon' lie to u bruh... BW General Discussion [ASL20] Ro16 Preview Pt1: Ascent BGH Auto Balance -> http://bghmmr.eu/ The Korean Terminology Thread
Tourneys
[ASL20] Ro16 Group A [ASL20] Ro16 Group B [Megathread] Daily Proleagues Is there English video for group selection for ASL
Strategy
Simple Questions, Simple Answers Muta micro map competition Fighting Spirit mining rates [G] Mineral Boosting
Other Games
General Games
Stormgate/Frost Giant Megathread General RTS Discussion Thread Iron Harvest: 1920+ Nintendo Switch Thread Warcraft III: The Frozen Throne
Dota 2
Official 'what is Dota anymore' discussion
League of Legends
Laptop on Rent in Delhi – Smart Choice for Student
Heroes of the Storm
Simple Questions, Simple Answers Heroes of the Storm 2.0
Hearthstone
Heroes of StarCraft mini-set
TL Mafia
TL Mafia Community Thread
Community
General
US Politics Mega-thread Russo-Ukrainian War Thread Things Aren’t Peaceful in Palestine The Games Industry And ATVI UK Politics Mega-thread
Fan Clubs
The Happy Fan Club!
Media & Entertainment
[Manga] One Piece Anime Discussion Thread Movie Discussion! [\m/] Heavy Metal Thread
Sports
2024 - 2026 Football Thread Formula 1 Discussion MLB/Baseball 2023 TeamLiquid Health and Fitness Initiative For 2023
World Cup 2022
Tech Support
Linksys AE2500 USB WIFI keeps disconnecting Computer Build, Upgrade & Buying Resource Thread High temperatures on bridge(s)
TL Community
BarCraft in Tokyo Japan for ASL Season5 Final The Automated Ban List
Blogs
The Personality of a Spender…
TrAiDoS
A very expensive lesson on ma…
Garnet
hello world
radishsoup
Lemme tell you a thing o…
JoinTheRain
RTS Design in Hypercoven
a11
Evil Gacha Games and the…
ffswowsucks
Customize Sidebar...

Website Feedback

Closed Threads



Active: 1398 users

Creating Passwords with 1337 speak?

Blogs > tryclops
Post a Reply
URfavHO
Profile Blog Joined April 2010
United States514 Posts
Last Edited: 2010-06-21 09:03:55
June 21 2010 04:27 GMT
#1
Last Summer, my family moved across town into a new home. This meant we would have to get a new internet service provider. After paying for the service, I was charged with setting up the new wireless router for the house(because my parents are cheap like that). In doing so, I learned a great deal about wireless security.

This began my interest in penetration testing my network's security. In my research I found an incredibly convenient OS called ---- (based off of Ubuntu making it very easy to run). It contained a vast suite of applications that can be used in pen testing. Almost immediately, I found that the WEP encryption was terrible and the WPA2 was considerably better.

Basically, the WEP encryption algorithm has been deciphered and can literally be cracked in under three minutes with remedial DOS-like commands. To do this, all that is required is a little bit of time to eat up some of the packets of information floating around and a program will decode it.

The WPA2 on the otherhand, has a considerably more complex algorithm. Only one out of the two types have been cracked(as far as I can recall; please correct me if otherwise). For this, a bruteforce attack is the most basic and simple; thus, the most probable attack on this kind of a network encryption. Using the ---- security applications it can be done with some success. The wordlists involved could potentially be hundreds of gigabytes longs and can take hours to compile(and that's just in .txt file... think about how many words that could be). That said, the casual penetration tester would simply look online to find a moderate pre-compiled list that might be 20 gigs or less to test with.

From my very basic knowledge of the technique, the wordlists are generally compiled around certain aspects or themes. For instance, I have seen a wordlist compiled that contained every single phone number to the corresponding region(4-5 gigs). In my opinion, knowing how these wordlists are compiled is essential to avoid getting cracked by the nefarious entities that roam our shared airspace.

Thus, after taking a shower, I had an epiphany that WPA2 passwords should involve a limited amount of 1337(leet) speak in them to add a small dust like layer of encryption. For instance the hypothetical password:

tasteless = 74ste13s5

Personally, I'm not a fan of a random password like jejn295d2i09i. As a password, it would be rather difficult to remember. Using 1337 speak is a basic encryption that can help make a simple, tangible password a stronger password.

I don't think any casual cracker script kiddie would compile such a password involving such a random, discombobulated assortment of characters. Some people actually say that 1337 speak was developed for avoiding word filters in IRC boards. Though that may not be the truth, I think it is a viable technique for password protection.

Essentially, I'm just trying to emphasize having strong password protection for wireless routers. If using the WEP encryption, I strongly recommend changing it to one of the WPA2's and then setting the password with something tangible and adding a layer of protection by implementing 1337 speak.

*note: I'm not a cracker. I have only pen tested on my own router at home so I may better understand the technology behind it. If I really wanted to get free wireless internet, I would drive five minutes away to my local McDonald's and get some lunch while I'm at it(I'm rather waif, I need the fat).

EDIT: fixed some grammar since Bush's No Child Left Behind program didn't work.

***
illu
Profile Blog Joined December 2008
Canada2531 Posts
June 21 2010 04:33 GMT
#2
By writing this blog you just ruined the security of your method. Congrats.
:]
AcrossFiveJulys
Profile Blog Joined September 2005
United States3612 Posts
June 21 2010 04:33 GMT
#3
All of my passwords are translated into 1337 speak. I would imagine that most dictionary attacks include some letters substituted with their corresponding numbers, but of course it's not tractable to account for all of them. The best passwords imo are esoteric phrases or abbreviations translated into 1337 speak so they are easy to remember. For example, getreaverdropped -> g37r3av3rdr0pp3d. No dictionary attack is going to get that.
illu
Profile Blog Joined December 2008
Canada2531 Posts
June 21 2010 04:37 GMT
#4
I think it's very easy to generate a new dictionary from the old one just by substituting some letters. Of course it increases the entropy of your password, but I still think it's better to just use a random one.
:]
Apa7HY
Profile Blog Joined January 2007
United States125 Posts
Last Edited: 2010-06-21 04:39:53
June 21 2010 04:39 GMT
#5
I use hexadecimal. Also, lol, posting this at 13:37 KST.

Anyways, so Apa7HY for example becomes 4171616779, which is kind of a bad example because it's all numbers. Okay okay, fine, how about..."johnsmith"? 6a6f686e736d697368. Pretty secure password I think.

Edit: Baww spent too long typing. Should have posted and edited in what I wanted to say
섹스섹스보지털
FiBsTeR
Profile Blog Joined February 2008
United States415 Posts
June 21 2010 05:06 GMT
#6
Interesting idea, but how do you remember 74ste13s5 instead of 7a573l35s? Seems like you'll end up memorizing more than just the text regardless.
DeathByMonkeys
Profile Blog Joined March 2008
United States742 Posts
June 21 2010 05:08 GMT
#7
I actually used the 1337 speak method to make my previous simple, dictionary word more secure. I took it one step further which you should also, have varying case of letters i.e. xXyYzZ. The easy way I went about this was I just made the first and last letters upper case and made the rest in the middle lower case.
eSen1a
Profile Blog Joined March 2010
Australia1058 Posts
June 21 2010 05:20 GMT
#8
i just use my dogs name lol
Cadgers
Profile Blog Joined August 2008
United States514 Posts
Last Edited: 2010-06-21 05:43:37
June 21 2010 05:32 GMT
#9
I've always used something like "mykeyisso888simple", never have had security problems and stuff like that is easy to remember.
-fj.
Profile Blog Joined April 2009
Samoa462 Posts
June 21 2010 05:34 GMT
#10
I just use some stupid meme or something very personal to me that I can remember, since that's the best type of entropy. I did put one as 1337 though, because they generally require you to have a number
radim
Profile Joined October 2009
Czech Republic122 Posts
Last Edited: 2010-06-21 08:54:05
June 21 2010 08:51 GMT
#11
I do use it in my passwords but with a completely made up word though. It kind of secures the password against vocabulary attack -.-

EDIT:

*note: I'm not a cracker.

props for using the right word! people get it confused so often..
끝까지.
Mortician
Profile Blog Joined December 2008
Bulgaria2332 Posts
June 21 2010 08:52 GMT
#12
I have always used simple combinations like 1234567890, qwertyuiop otherwise I forget them

Now I have to change my password on TL...
"If anything, the skill cap in sc2 is higher [than sc1] because there are a lot more things you can do at one given time. " darmousseh
JeeJee
Profile Blog Joined July 2003
Canada5652 Posts
Last Edited: 2010-06-21 08:56:17
June 21 2010 08:55 GMT
#13
my main password and its spinoffs is actually some guy's name on useast i used to play with.. from a loong time ago (we played on proving grounds if thats any indication haha)
it was pretty stupid but i was like 12 luckily it actually turned out to be a nice combination of letters and numbers and i've added caps to it, so it's pretty good

for your idea: it works, you can also try replacing i's with !s as even a single symbol will boost the strength of your password significantly according to some random website which probably has no merit, but hey can't hurt =)
(\o/)  If you want it, you find a way. Otherwise you find excuses. No exceptions.
 /_\   aka Shinbi (requesting a name change since 27/05/09 ☺)
URfavHO
Profile Blog Joined April 2010
United States514 Posts
June 21 2010 08:58 GMT
#14
On June 21 2010 14:06 FiBsTeR wrote:
Interesting idea, but how do you remember 74ste13s5 instead of 7a573l35s? Seems like you'll end up memorizing more than just the text regardless.


If you've already got that memorized, my suggestion would be quite irrelevant. As I stressed in the OP, I prefer to have something tangible that relates to the password and it is strictly just a preference. I actually used to use passwords that could be typed in with only one hand like hi9jon or ugh0kmon or tearever234. I never really had any idea how vulnerable I was. So adding things like leet speak is just a small step up but a significant one.

Apa7HY, dude... whatever your password is, I'm sure it's intense. I'd hate to type that in without a numberpad.

Oh and I just remembered some news article I read some time back about CIA encryption. They would purposely misspell words to confuse cipher machines. I believed the technique was used on of the monuments in the lobby of some government building. It took well over fifty years to crack it. Just some food for thought.
Please log in or register to reply.
Live Events Refresh
The PondCast
13:00
Episode 62
CranKy Ducklings50
Liquipedia
Kung Fu Cup
12:00
SC:EVO Monthly
TaeJa vs SHIN
ByuN vs Creator
SteadfastSC395
IndyStarCraft 128
Liquipedia
[ Submit Event ]
Live Streams
Refresh
StarCraft 2
SteadfastSC 395
Lowko345
IndyStarCraft 128
Rex 110
Creator 14
ProTech9
StarCraft: Brood War
Calm 6344
GuemChi 2695
Rain 2420
Bisu 1409
Shuttle 905
Jaedong 755
Mini 729
firebathero 474
EffOrt 435
Stork 354
[ Show more ]
BeSt 350
Last 186
Snow 184
Soulkey 168
sSak 166
Light 148
hero 134
Barracks 132
ggaemo 125
Mind 64
Backho 56
TY 48
ToSsGirL 45
Sharp 43
Mong 38
Rush 36
Sea.KH 36
Sexy 31
Bale 31
Aegong 29
soO 28
Yoon 18
sorry 16
zelot 14
Nal_rA 13
HiyA 13
Terrorterran 11
IntoTheRainbow 8
Britney 0
Dota 2
The International104877
Gorgc8389
Dendi520
BananaSlamJamma131
Counter-Strike
olofmeister1591
x6flipin555
markeloff87
Other Games
B2W.Neo734
DeMusliM235
Mlord224
crisheroes173
Hui .165
mouzStarbuck101
oskar92
ArmadaUGS78
QueenE58
Happy11
Organizations
Other Games
gamesdonequick766
StarCraft 2
Blizzard YouTube
StarCraft: Brood War
BSLTrovo
sctven
[ Show 13 non-featured ]
StarCraft 2
• AfreecaTV YouTube
• intothetv
• Kozan
• IndyKCrew
• LaughNgamezSOOP
• Migwel
• sooper7s
StarCraft: Brood War
• BSLYoutube
• STPLYoutube
• ZZZeroYoutube
Dota 2
• Ler67
League of Legends
• Nemesis1661
• Jankos930
Upcoming Events
RSL Revival
20h 29m
Classic vs TriGGeR
ByuN vs Maru
Online Event
22h 29m
Kung Fu Cup
22h 29m
BSL Team Wars
1d 5h
RSL Revival
1d 20h
Maestros of the Game
2 days
ShoWTimE vs Classic
Clem vs herO
Serral vs Bunny
Reynor vs Zoun
Cosmonarchy
2 days
Bonyth vs Dewalt
[BSL 2025] Weekly
2 days
RSL Revival
2 days
Maestros of the Game
3 days
[ Show More ]
BSL Team Wars
3 days
Afreeca Starleague
3 days
Snow vs Sharp
Jaedong vs Mini
Wardi Open
3 days
Sparkling Tuna Cup
4 days
Afreeca Starleague
4 days
Light vs Speed
Larva vs Soma
LiuLi Cup
5 days
The PondCast
6 days
Liquipedia Results

Completed

Copa Latinoamericana 4
SEL Season 2 Championship
HCC Europe

Ongoing

BSL 20 Team Wars
KCM Race Survival 2025 Season 3
BSL 21 Points
ASL Season 20
CSL 2025 AUTUMN (S18)
LASL Season 20
RSL Revival: Season 2
Maestros of the Game
Chzzk MurlocKing SC1 vs SC2 Cup #2
BLAST Open Fall 2025
BLAST Open Fall Qual
Esports World Cup 2025
BLAST Bounty Fall 2025
BLAST Bounty Fall Qual
IEM Cologne 2025
FISSURE Playground #1

Upcoming

2025 Chongqing Offline CUP
BSL Polish World Championship 2025
BSL Season 21
BSL 21 Team A
EC S1
SL Budapest Major 2025
BLAST Rivals Fall 2025
IEM Chengdu 2025
PGL Masters Bucharest 2025
MESA Nomadic Masters Fall
Thunderpick World Champ.
CS Asia Championships 2025
ESL Pro League S22
StarSeries Fall 2025
FISSURE Playground #2
TLPD

1. ByuN
2. TY
3. Dark
4. Solar
5. Stats
6. Nerchio
7. sOs
8. soO
9. INnoVation
10. Elazer
1. Rain
2. Flash
3. EffOrt
4. Last
5. Bisu
6. Soulkey
7. Mini
8. Sharp
Sidebar Settings...

Advertising | Privacy Policy | Terms Of Use | Contact Us

Original banner artwork: Jim Warren
The contents of this webpage are copyright © 2025 TLnet. All Rights Reserved.