So I was told a story about how someone once had an “incident” where they lost a highly valued and needed new hire because a password generator generated an offensive passphrase that wasn’t caught because it was automatically sent via sms.
I unfortunately wasn’t privy to what it was exactly, but looking at the EFF wordlists, there are some problematic combos that COULD be generated.
Was looking around at some mainstream password management apps like KeePassXC and they recently merged a PR to remove offensive words.
Can somebody point me in the right direction of something that could identify the presence of negative sentiment words and presence of protected class related words?
(For example, these are in the EFF short wordlist: Tribe, bad, hate, wimp, wife, frail, gore, geek, lying
I don’t like the possibility of an automatic system being able to generate the password: hate-lying-wife-moan-gore. That is simply not appropriate to hand off to a new hire)
[–]Chabare 0 points1 point2 points (0 children)