• HereIAm@lemmy.world
      link
      fedilink
      arrow-up
      7
      ·
      5 days ago

      Kinda yes, but really no. If they assume there is always a comma, but if you add it after you’ve generated whatever password you’ve chosen you’re still making it harder for them. You haven’t compromised on the length, and now they need to figure out where in the rest of your random password the comma goes.

      • wavebeam@lemmy.world
        link
        fedilink
        arrow-up
        1
        arrow-down
        10
        ·
        5 days ago

        that’s reducing entropy even more. by assuming everything between two commas is a password, they would have a shockingly high hit rate.

        • HereIAm@lemmy.world
          link
          fedilink
          arrow-up
          6
          ·
          5 days ago

          What? If you’re talking about an already leaked list of passwords in a CSV it doesn’t matter?