pointbiz / bitaddress.org

JavaScript Client-Side Bitcoin Wallet Generator
https://www.bitaddress.org
2.44k stars 1.5k forks source link

Brainwallet #27

Open nivoc opened 10 years ago

nivoc commented 10 years ago

The Brainwallet-Section-Warning is not working good enough. Every now and then is there someone on Reddit who lost his coins because of a weak brainwallet.

http://www.reddit.com/r/Bitcoin/comments/1q5rh6/4_btc_hacked_from_semicold_storage/

The Warning has to be much more explicit about what a "secure" password means and why "as#$h377!52" is not secure at all if people probe 4 billion combinations a second.

And the warning it should be highlighted.

And maybe stated that a brainwallet-passwort that is less complex then a normal bitcoin private key like 5KGoV3oZ9RSnqrpB9pGw3a9duMMqeHYwDqqeUQf4cdXACh9xqhJ weakens your security.

Maybe a link to http://www.coindesk.com/dumb-mistakes-costly-bitcoin-losses/ would help to explain it.

Gaff commented 10 years ago

Also there's really not much point in having a two-field password entry if you're then just going to redner the private key openly ;)

nivoc commented 10 years ago

Hiding maybe. Bit two-field makes sense to prevent mistyping - which would be a disaster ;)

socantre commented 10 years ago

Seems like a good place to link to diceware.org

torbengb commented 6 years ago

diceware.org

That is not found (anymore?). Best guess is http://world.std.com/~reinhold/diceware.html