Don’t Use GUIDs As Passwords

Raymond Chen: This is a really bad idea. GUIDs are designed for uniqueness, not for security. For example, we saw that substrings of GUIDs are not unique. For example, in the classic v1 algorithm, the first part of the GUID is a timestamp. Timestamps are a great technique for helping to build uniqueness, but they … Continue reading Don’t Use GUIDs As Passwords