#CorrectHorseBatteryStaple

Martin Vogelmardor@ruhr.social
2025-11-10

@skye Randall Munroe did the math for #XKCD: "correct horse battery staple"
xkcd.com/936/
#PasswordStrength #CorrectHorseBatteryStaple

2025-06-20

I just published “Generating Passphrases Like correct horse battery staple” at
ii.com/passphrase-generators/ - please post suggestions for passphrase generators as a reply to this toot and I'll include them in my article!
#InfiniteInk #Privacy #Security #Tech #Passwords #Passphrases #CorrectHorseBatteryStaple
#Words #Writing #Byℵ #ByNM

2025-04-09

With all of this talk of dopey spreadsheet errors, there is strong temptation for that hacker to take over @keefeglise's account again. We must find some alternative completely non-#economics subject to counteract that with.

In the current emergency it might have to involve all four of Essex, jazz, lunch, and plants.

You saw the #EssexJazzLunchPlants hashtag here first, people.

And no, that is not a password.(-:

#CorrectHorseBatteryStaple

PedroMJpedromj
2024-11-17

Sometimes, plain logic is not correct:
[As in from xkcd.com/936/]

2024-06-18

@gozzy

You are correct, Gozzy battery staple. (-:

#CorrectHorseBatteryStaple #dadjokes

2024-06-04

@kevlin Weird rules like special characters aren't even useful. They just annoy people and make putting actual good passwords more annoying #CorrectHorseBatteryStaple

Geoff 🏴󠁧󠁢󠁳󠁣󠁴󠁿_thegeoff
2024-05-27
2024-02-01

Ich habe, zum Anlass des "Ändere dein Passwort"-Tages, einen zehn Jahre alten Artikel zum Thema Passwortsicherheit aus meinem Archiv gekramt und etwas überarbeitet neu veröffentlicht.

Ich hoffe, ich habe keinen Pferdeb̶a̶t̶t̶e̶r̶i̶e̶s̶t̶a̶p̶e̶l̶fuß dabei übersehen.

caspari.saarland/sicherer-umga

#ITSec #Sicherheit #Security #Passwort #CorrectHorseBatteryStaple

2023-10-14

@roastinghouse

How does one advertise with roast pork coffee donuts anyway?

#CorrectHorseBatteryStaple

2023-09-26

@stedubya

So your horse battery staple is now correct?

#CorrectHorseBatteryStaple

2023-08-31

@tdp_org

We've had over a decade of "correct horse battery staple", and there are people who *still* don't understand.

I saw one explainer on YouTube, done this year, where the poster completely missed the important point that the advantage was that humans could memorize random words more easily than random ASCII characters.

#CorrectHorseBatteryStaple

2023-04-20

@glymph @witewulf @DJDarren

... and that the table doesn't get anywhere near the password length of "correcthorsebatterystaple" to show how long that would take.

Mind you, many people would guess it in 1 nowadays. (-:

#passwords #CorrectHorseBatteryStaple

perfectly normal (horse) beastg1comics@equestria.social
2023-01-21

#CorrectHorseBatteryStaple because I had to use a staple to correct my battery's polarity ±

2023-01-13

@gozzy It's been tried a couple of times, but the debunking always turn out to be faulty. Bruce Schneier's attempt was taken to task at security.stackexchange.com/q/6 for example.

See the Explain #XKCD that I pointed and security.stackexchange.com/q/6 and crypto.stackexchange.com/q/625 for a lot more alternative ways of understanding this.

#correcthorsebatterystaple

2023-01-13

@gozzy It has been over a decade since that was published, and word has got all over the place, "normal folk" actually do know this stuff now.

#XKCD #correcthorsebatterystaple

2023-01-13

@gozzy Not true. Easy to memorize passwords are better, as they contain more bits that need guessing _and_ are easier for humans.

explainxkcd.com/wiki/index.php

You have remembered #correcthorsebatterystaple already. (-:

#XKCD

2023-01-10

@glenn_wilhide Not the case, given that I was told about "correcthorsebatterystaple" years ago and that article repeats the advice. The Washington Post may not have kept up, but many of the rest of us have.

explainxkcd.com/wiki/index.php

#XKCD #infosec #correcthorsebatterystaple

2023-01-10

@dgar Do you realise that this post will trigger a #correcthorsebatterystaple response by some readers?

perfectly normal (horse) beastg1comics@equestria.social
2022-12-04
seasidetestingseasidetesting
2022-04-02

I admit, I still wonder why so many password fields accept only a limited (or extremely limited) sunset of available characters. This isn't the (19) 70s anymore.
… Apart from the whole aspect (➙ xkcd.com/936/)

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst