• Log InLog In
  • Register
Liquid`
Team Liquid Liquipedia
EDT 07:59
CET 12:59
KST 20:59
  • Home
  • Forum
  • Calendar
  • Streams
  • Liquipedia
  • Features
  • Store
  • EPT
  • TL+
  • StarCraft 2
  • Brood War
  • Smash
  • Heroes
  • Counter-Strike
  • Overwatch
  • Liquibet
  • Fantasy StarCraft
  • TLPD
  • StarCraft 2
  • Brood War
  • Blogs
Forum Sidebar
Events/Features
News
Featured News
[ASL20] Finals Preview: Arrival13TL.net Map Contest #21: Voting10[ASL20] Ro4 Preview: Descent11Team TLMC #5: Winners Announced!3[ASL20] Ro8 Preview Pt2: Holding On9
Community News
Weekly Cups (Oct 20-26): MaxPax, Clem, Creator win22025 RSL Offline Finals Dates + Ticket Sales!9BSL21 Open Qualifiers Week & CONFIRM PARTICIPATION1Crank Gathers Season 2: SC II Pro Teams10Merivale 8 Open - LAN - Stellar Fest3
StarCraft 2
General
Weekly Cups (Oct 20-26): MaxPax, Clem, Creator win RotterdaM "Serral is the GOAT, and it's not close" Could we add "Avoid Matchup" Feature for rankgame The New Patch Killed Mech! Chinese SC2 server to reopen; live all-star event in Hangzhou
Tourneys
Crank Gathers Season 2: SC II Pro Teams 2025 RSL Offline Finals Dates + Ticket Sales! Merivale 8 Open - LAN - Stellar Fest $5,000+ WardiTV 2025 Championship $3,500 WardiTV Korean Royale S4
Strategy
Custom Maps
Map Editor closed ?
External Content
Mutation # 497 Battle Haredened Mutation # 496 Endless Infection Mutation # 495 Rest In Peace Mutation # 494 Unstable Environment
Brood War
General
BGH Auto Balance -> http://bghmmr.eu/ [ASL20] Ask the mapmakers — Drop your questions BW General Discussion BSL Team A vs Koreans - Sat-Sun 16:00 CET [ASL20] Finals Preview: Arrival
Tourneys
[ASL20] Grand Finals The Casual Games of the Week Thread BSL21 Open Qualifiers Week & CONFIRM PARTICIPATION ASL final tickets help
Strategy
PvZ map balance How to stay on top of macro? Soma's 9 hatch build from ASL Game 2 Current Meta
Other Games
General Games
Stormgate/Frost Giant Megathread General RTS Discussion Thread Path of Exile Nintendo Switch Thread Dawn of War IV
Dota 2
Official 'what is Dota anymore' discussion LiquidDota to reintegrate into TL.net
League of Legends
Heroes of the Storm
Simple Questions, Simple Answers Heroes of the Storm 2.0
Hearthstone
Deck construction bug Heroes of StarCraft mini-set
TL Mafia
TL Mafia Community Thread SPIRED by.ASL Mafia {211640}
Community
General
Russo-Ukrainian War Thread US Politics Mega-thread Things Aren’t Peaceful in Palestine YouTube Thread The Chess Thread
Fan Clubs
White-Ra Fan Club The herO Fan Club!
Media & Entertainment
Anime Discussion Thread Movie Discussion! [Manga] One Piece Korean Music Discussion Series you have seen recently...
Sports
2024 - 2026 Football Thread MLB/Baseball 2023 Formula 1 Discussion TeamLiquid Health and Fitness Initiative For 2023 NBA General Discussion
World Cup 2022
Tech Support
SC2 Client Relocalization [Change SC2 Language] Linksys AE2500 USB WIFI keeps disconnecting Computer Build, Upgrade & Buying Resource Thread
TL Community
The Automated Ban List Recent Gifted Posts
Blogs
Just for future reference, …
Peanutsc
Reality "theory" prov…
perfectspheres
The Benefits Of Limited Comm…
TrAiDoS
Our Last Hope in th…
KrillinFromwales
Certified Crazy
Hildegard
Customize Sidebar...

Website Feedback

Closed Threads



Active: 1307 users

Creating Passwords with 1337 speak?

Blogs > tryclops
Post a Reply
URfavHO
Profile Blog Joined April 2010
United States514 Posts
Last Edited: 2010-06-21 09:03:55
June 21 2010 04:27 GMT
#1
Last Summer, my family moved across town into a new home. This meant we would have to get a new internet service provider. After paying for the service, I was charged with setting up the new wireless router for the house(because my parents are cheap like that). In doing so, I learned a great deal about wireless security.

This began my interest in penetration testing my network's security. In my research I found an incredibly convenient OS called ---- (based off of Ubuntu making it very easy to run). It contained a vast suite of applications that can be used in pen testing. Almost immediately, I found that the WEP encryption was terrible and the WPA2 was considerably better.

Basically, the WEP encryption algorithm has been deciphered and can literally be cracked in under three minutes with remedial DOS-like commands. To do this, all that is required is a little bit of time to eat up some of the packets of information floating around and a program will decode it.

The WPA2 on the otherhand, has a considerably more complex algorithm. Only one out of the two types have been cracked(as far as I can recall; please correct me if otherwise). For this, a bruteforce attack is the most basic and simple; thus, the most probable attack on this kind of a network encryption. Using the ---- security applications it can be done with some success. The wordlists involved could potentially be hundreds of gigabytes longs and can take hours to compile(and that's just in .txt file... think about how many words that could be). That said, the casual penetration tester would simply look online to find a moderate pre-compiled list that might be 20 gigs or less to test with.

From my very basic knowledge of the technique, the wordlists are generally compiled around certain aspects or themes. For instance, I have seen a wordlist compiled that contained every single phone number to the corresponding region(4-5 gigs). In my opinion, knowing how these wordlists are compiled is essential to avoid getting cracked by the nefarious entities that roam our shared airspace.

Thus, after taking a shower, I had an epiphany that WPA2 passwords should involve a limited amount of 1337(leet) speak in them to add a small dust like layer of encryption. For instance the hypothetical password:

tasteless = 74ste13s5

Personally, I'm not a fan of a random password like jejn295d2i09i. As a password, it would be rather difficult to remember. Using 1337 speak is a basic encryption that can help make a simple, tangible password a stronger password.

I don't think any casual cracker script kiddie would compile such a password involving such a random, discombobulated assortment of characters. Some people actually say that 1337 speak was developed for avoiding word filters in IRC boards. Though that may not be the truth, I think it is a viable technique for password protection.

Essentially, I'm just trying to emphasize having strong password protection for wireless routers. If using the WEP encryption, I strongly recommend changing it to one of the WPA2's and then setting the password with something tangible and adding a layer of protection by implementing 1337 speak.

*note: I'm not a cracker. I have only pen tested on my own router at home so I may better understand the technology behind it. If I really wanted to get free wireless internet, I would drive five minutes away to my local McDonald's and get some lunch while I'm at it(I'm rather waif, I need the fat).

EDIT: fixed some grammar since Bush's No Child Left Behind program didn't work.

***
illu
Profile Blog Joined December 2008
Canada2531 Posts
June 21 2010 04:33 GMT
#2
By writing this blog you just ruined the security of your method. Congrats.
:]
AcrossFiveJulys
Profile Blog Joined September 2005
United States3612 Posts
June 21 2010 04:33 GMT
#3
All of my passwords are translated into 1337 speak. I would imagine that most dictionary attacks include some letters substituted with their corresponding numbers, but of course it's not tractable to account for all of them. The best passwords imo are esoteric phrases or abbreviations translated into 1337 speak so they are easy to remember. For example, getreaverdropped -> g37r3av3rdr0pp3d. No dictionary attack is going to get that.
illu
Profile Blog Joined December 2008
Canada2531 Posts
June 21 2010 04:37 GMT
#4
I think it's very easy to generate a new dictionary from the old one just by substituting some letters. Of course it increases the entropy of your password, but I still think it's better to just use a random one.
:]
Apa7HY
Profile Blog Joined January 2007
United States125 Posts
Last Edited: 2010-06-21 04:39:53
June 21 2010 04:39 GMT
#5
I use hexadecimal. Also, lol, posting this at 13:37 KST.

Anyways, so Apa7HY for example becomes 4171616779, which is kind of a bad example because it's all numbers. Okay okay, fine, how about..."johnsmith"? 6a6f686e736d697368. Pretty secure password I think.

Edit: Baww spent too long typing. Should have posted and edited in what I wanted to say
섹스섹스보지털
FiBsTeR
Profile Blog Joined February 2008
United States415 Posts
June 21 2010 05:06 GMT
#6
Interesting idea, but how do you remember 74ste13s5 instead of 7a573l35s? Seems like you'll end up memorizing more than just the text regardless.
DeathByMonkeys
Profile Blog Joined March 2008
United States742 Posts
June 21 2010 05:08 GMT
#7
I actually used the 1337 speak method to make my previous simple, dictionary word more secure. I took it one step further which you should also, have varying case of letters i.e. xXyYzZ. The easy way I went about this was I just made the first and last letters upper case and made the rest in the middle lower case.
eSen1a
Profile Blog Joined March 2010
Australia1058 Posts
June 21 2010 05:20 GMT
#8
i just use my dogs name lol
Cadgers
Profile Blog Joined August 2008
United States514 Posts
Last Edited: 2010-06-21 05:43:37
June 21 2010 05:32 GMT
#9
I've always used something like "mykeyisso888simple", never have had security problems and stuff like that is easy to remember.
-fj.
Profile Blog Joined April 2009
Samoa462 Posts
June 21 2010 05:34 GMT
#10
I just use some stupid meme or something very personal to me that I can remember, since that's the best type of entropy. I did put one as 1337 though, because they generally require you to have a number
radim
Profile Joined October 2009
Czech Republic122 Posts
Last Edited: 2010-06-21 08:54:05
June 21 2010 08:51 GMT
#11
I do use it in my passwords but with a completely made up word though. It kind of secures the password against vocabulary attack -.-

EDIT:

*note: I'm not a cracker.

props for using the right word! people get it confused so often..
끝까지.
Mortician
Profile Blog Joined December 2008
Bulgaria2332 Posts
June 21 2010 08:52 GMT
#12
I have always used simple combinations like 1234567890, qwertyuiop otherwise I forget them

Now I have to change my password on TL...
"If anything, the skill cap in sc2 is higher [than sc1] because there are a lot more things you can do at one given time. " darmousseh
JeeJee
Profile Blog Joined July 2003
Canada5652 Posts
Last Edited: 2010-06-21 08:56:17
June 21 2010 08:55 GMT
#13
my main password and its spinoffs is actually some guy's name on useast i used to play with.. from a loong time ago (we played on proving grounds if thats any indication haha)
it was pretty stupid but i was like 12 luckily it actually turned out to be a nice combination of letters and numbers and i've added caps to it, so it's pretty good

for your idea: it works, you can also try replacing i's with !s as even a single symbol will boost the strength of your password significantly according to some random website which probably has no merit, but hey can't hurt =)
(\o/)  If you want it, you find a way. Otherwise you find excuses. No exceptions.
 /_\   aka Shinbi (requesting a name change since 27/05/09 ☺)
URfavHO
Profile Blog Joined April 2010
United States514 Posts
June 21 2010 08:58 GMT
#14
On June 21 2010 14:06 FiBsTeR wrote:
Interesting idea, but how do you remember 74ste13s5 instead of 7a573l35s? Seems like you'll end up memorizing more than just the text regardless.


If you've already got that memorized, my suggestion would be quite irrelevant. As I stressed in the OP, I prefer to have something tangible that relates to the password and it is strictly just a preference. I actually used to use passwords that could be typed in with only one hand like hi9jon or ugh0kmon or tearever234. I never really had any idea how vulnerable I was. So adding things like leet speak is just a small step up but a significant one.

Apa7HY, dude... whatever your password is, I'm sure it's intense. I'd hate to type that in without a numberpad.

Oh and I just remembered some news article I read some time back about CIA encryption. They would purposely misspell words to confuse cipher machines. I believed the technique was used on of the monuments in the lobby of some government building. It took well over fifty years to crack it. Just some food for thought.
Please log in or register to reply.
Live Events Refresh
Next event in 1m
[ Submit Event ]
Live Streams
Refresh
StarCraft 2
Lowko245
Rex 89
StarCraft: Brood War
Bisu 2367
BeSt 959
actioN 497
Mini 210
EffOrt 196
Last 187
Light 157
sSak 150
Mind 64
ToSsGirL 62
[ Show more ]
PianO 60
Aegong 57
Larva 37
Liquid`Ret 37
sorry 30
Sharp 19
soO 17
Icarus 17
yabsab 15
Sacsri 13
scan(afreeca) 12
Bale 9
Terrorterran 9
HiyA 7
Dota 2
XcaliburYe359
ODPixel161
Counter-Strike
fl0m562
x6flipin474
Other Games
singsing1870
olofmeister1551
B2W.Neo603
Pyrionflax340
crisheroes264
Sick170
Hui .144
oskar81
Happy77
Mew2King66
Organizations
Counter-Strike
PGL12470
StarCraft: Brood War
lovetv 16
StarCraft 2
Blizzard YouTube
StarCraft: Brood War
BSLTrovo
sctven
[ Show 14 non-featured ]
StarCraft 2
• LUISG 67
• AfreecaTV YouTube
• intothetv
• Kozan
• iHatsuTV 0
• IndyKCrew
• LaughNgamezSOOP
• Migwel
• sooper7s
StarCraft: Brood War
• iopq 2
• BSLYoutube
• STPLYoutube
• ZZZeroYoutube
League of Legends
• Jankos2857
Upcoming Events
OSC
1m
WardiTV99
CrankTV Team League
1h 1m
Shopify Rebellion vs Team Falcon
BASILISK vs Team Liquid
Replay Cast
11h 1m
The PondCast
21h 1m
CrankTV Team League
1d 1h
Replay Cast
1d 22h
WardiTV Invitational
2 days
ByuN vs Spirit
herO vs Solar
MaNa vs Gerald
Rogue vs GuMiho
CrankTV Team League
2 days
Replay Cast
2 days
BSL Team A[vengers]
3 days
Dewalt vs Shine
UltrA vs ZeLoT
[ Show More ]
BSL 21
3 days
Sparkling Tuna Cup
3 days
BSL Team A[vengers]
4 days
Cross vs Motive
Sziky vs HiyA
BSL 21
4 days
Wardi Open
5 days
Monday Night Weeklies
5 days
Liquipedia Results

Completed

CSL 2025 AUTUMN (S18)
WardiTV TLMC #15
Eternal Conflict S1

Ongoing

BSL 21 Points
BSL 21 Team A
C-Race Season 1
IPSL Winter 2025-26
KCM Race Survival 2025 Season 4
SOOP Univ League 2025
CranK Gathers Season 2: SC II Pro Teams
PGL Masters Bucharest 2025
Thunderpick World Champ.
CS Asia Championships 2025
ESL Pro League S22
StarSeries Fall 2025
FISSURE Playground #2
BLAST Open Fall 2025
BLAST Open Fall Qual
Esports World Cup 2025
BLAST Bounty Fall 2025

Upcoming

SC4ALL: Brood War
YSL S2
BSL Season 21
SLON Tour Season 2
BSL 21 Non-Korean Championship
RSL Offline Finals
WardiTV 2025
RSL Revival: Season 3
Stellar Fest
SC4ALL: StarCraft II
META Madness #9
eXTREMESLAND 2025
ESL Impact League Season 8
SL Budapest Major 2025
BLAST Rivals Fall 2025
IEM Chengdu 2025
TLPD

1. ByuN
2. TY
3. Dark
4. Solar
5. Stats
6. Nerchio
7. sOs
8. soO
9. INnoVation
10. Elazer
1. Rain
2. Flash
3. EffOrt
4. Last
5. Bisu
6. Soulkey
7. Mini
8. Sharp
Sidebar Settings...

Advertising | Privacy Policy | Terms Of Use | Contact Us

Original banner artwork: Jim Warren
The contents of this webpage are copyright © 2025 TLnet. All Rights Reserved.