However, we find that relatively weak passwords, about 20 bits or so, are sufficient to make brute-force attacks on a single account unrealistic so long as a “three strikes” type rule is in place.
然而,我们发现,长度约为20个字符左右、相对较“弱”的密码也已经能够使得针对单一账户的暴力破解变得不现实:只要有“三振出局”的规范即可。 (译者注:原文的“three strikes” type rule 指的应该是连续三次输入错误密码就会暂时锁死账户,具体可参考此处。)
This information is used to help identify potential security "holes" that may be weak points for attacks against customers.
这些信息用于帮助发现潜在的安全“漏洞”,此类弱点可能被利用向客户发起攻击。
Passwords that are too weak of course invite brute-force attacks.
当然了,弱密码的确容易招致暴力破解攻击。
应用推荐