just saw this over on twitter:
#CoSoSec
@x0rz
Pssst, don't use this https://passwordgenerator.online/
It generates the passwords *server-side*, looks shady AF. It probably adds them in a dictionary or something. #password #cracking
@Kitty62862 - There does have to be a server, but password generation could be done 100% in javascript which runs exclusively on *your* client machine.
And with the right tools, you can determine if that password went back to the server.
@0x56 For all that work, I’ll just get better at making them up 😏
@0x56 I might be captain obvious here, but do they think the Wizard of Oz creates the password?! There’s gotta be a server.
Derp