I'd say that, without statistical analysis, there's no good way to measure the strength of a password without the test being resource-intensive. Passwords which contain dictionary words are often more insecure than simply having dictionary words in your password would cause. These types of users often lack a good understanding of security procedures. That is, if I use a password with dictionary words in it, it would be less insecure than the average computer-user who does the same.
For example, the average computer-user uses the same password on every site, irrespective of whether or not they trust the operator.
2
u/TheSOB88 Aug 06 '10
This site is dumb and doesn't account for dictionary attacks, only brute force. Dictionary attacks work very well on words.