Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Vista General Discussion > Vista Account Password Security

Reply
Thread Tools Display Modes

Vista Account Password Security

 
 
Bill Martin
Guest
Posts: n/a

 
      02-07-2008
Anyone know how secure Vista's account passwords are?

If I set one Vista account to share files over the net connection, is
that a major security breach? In theory one would need to know the
account name and password to access the files. But has every hacker
on the web already figured out how to get past this? Or some of them
anyhow?

Basically I'm asking whether I need remember to kill the share
capability whenever I take the machine out of the house like one had
to do with XP?

Thanks.

Bill
 
Reply With Quote
 
 
 
 
the wharf rat
Guest
Posts: n/a

 
      02-07-2008
In article <>,
Bill Martin <> wrote:
>Anyone know how secure Vista's account passwords are?
>


They're actually very secure. UNLESS you use trivial passwords.
The password isn't transmitted in plain text and the cryptography is
supposedly strong.

I'd turn off the share to be safe anyway. Often when these
things are compromised it's either a weak password or a flaw that allows
security to be bypassed.

 
Reply With Quote
 
alexB
Guest
Posts: n/a

 
      02-07-2008
> If I set one Vista account to share files over the net connection, is
> that a major security breach?


You have to be vigilant. There are also rules to create safe PWs. No PW with
your first or last name, no birth date, etc.
http://www.microsoft.com/india/small...epassword.mspx

>In theory one would need to know the
> account name and password to access the files.


Yes, this is true and a strong PW guarantees that the shares are safe.

>But has every hacker
> on the web already figured out how to get past this? Or some of them
> anyhow?


Apparently NO but they are trying hard. If you monitor the posts in this NG,
a lot of shadowy characters around here are trying to badmouth Vista,
suggest that people should go back to XP, Linux, etc. They monotonously
attack anyone who contradicts them. Vista is a knife in their heart and they
know it. All kinds of ridiculous statements could be read, quite hilarious
at times.

> Basically I'm asking whether I need remember to kill the share
> capability whenever I take the machine out of the house like one had
> to do with XP?


I do not quite understand this. If you take your machine out of the house
and you lose it, or it is stolen, then anyone who could break your sign in
PW will be able to compromise your files no matter what. It will all depends
on the strength of your PW.

If they install a new Vista over this HDD all files of any security
significance will be collected in Windows.old folder and the person will
come here asking for ways to break in. It is kind of unlikely they will be
able to do it, although I am not sure about the last part.

"Bill Martin" <> wrote in message
news:...
> Anyone know how secure Vista's account passwords are?
>
> If I set one Vista account to share files over the net connection, is
> that a major security breach? In theory one would need to know the
> account name and password to access the files. But has every hacker
> on the web already figured out how to get past this? Or some of them
> anyhow?
>
> Basically I'm asking whether I need remember to kill the share
> capability whenever I take the machine out of the house like one had
> to do with XP?
>
> Thanks.
>
> Bill


 
Reply With Quote
 
Bill Martin
Guest
Posts: n/a

 
      02-08-2008
On Thu, 7 Feb 2008 14:27:03 -0500, "alexB" <> wrote:

>
>> Basically I'm asking whether I need remember to kill the share
>> capability whenever I take the machine out of the house like one had
>> to do with XP?

>
>I do not quite understand this. If you take your machine out of the house
>and you lose it, or it is stolen, then anyone who could break your sign in
>PW will be able to compromise your files no matter what. It will all depends
>on the strength of your PW.

----------------------------------

I'm separating the security issues of someone cracking into my disk
while in a public wifi cafe or hotel, from that of someone gaining
physical control of a stolen machine.

I do have critical files encrypted to provide some protection against
the latter case, but I'd still rather not have anyone rummaging my
disk or covertly installing viruses in the former case.

Using strong passwords is, of course, a first necessity. But even
that is moot so long as people cannot see/guess the userid itself. I
just want to understand that Vista doesn't expose that over a wifi
connection.

Bill
 
Reply With Quote
 
Bill Martin
Guest
Posts: n/a

 
      02-08-2008
On Thu, 7 Feb 2008 18:46:42 +0000 (UTC), (the wharf
rat) wrote:


>... I'd turn off the share to be safe anyway. Often when these
>things are compromised it's either a weak password or a flaw that allows
>security to be bypassed.


The password issue I understand and control. It's the "flaw" issue
that worries me - it's under Microsoft's control. That's why I
thought I'd ask here if the user account login was widely known to be
a weak security barrier in Vista - as passwords are known to be for a
number of widely used application programs. Or whether people trust
it.

Thanks.

Bill
 
Reply With Quote
 
the wharf rat
Guest
Posts: n/a

 
      02-08-2008
In article <>,
Bill Martin <> wrote:
>just want to understand that Vista doesn't expose that over a wifi
>connection.
>


Vista does not expose login information. It is encrypted in transit.

Well, unless you're connecting to an NT share...

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Local Vista User Account using Domain Security Pol? Noob Windows Vista Security 4 04-01-2008 01:35 PM
User Account Password Issue - Windows Vista bighite Windows Vista Security 1 12-14-2007 03:06 AM
Utlity to recover Vista Mail account password? Ian R Windows Vista Mail 0 09-22-2007 09:44 AM
Owner account password "the user name or password is incorrect" KOSKIDUST Windows Vista Administration 2 08-31-2007 05:16 PM
vista password change account lockout Bob Moore Windows Vista Networking 0 06-20-2007 05:38 PM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59