> LLM-generated passwords (generated directly by the LLM, rather than by an agent using a tool)
This seems like kind of a pointless analysis to me? Humans also generate bad passwords. It's why we use crypto-hardened RNG tools.
It’s pointless if you believe no one is asking LLMs to generate passwords for them.
It’s pointless if you believe no one is asking LLMs to generate passwords for them.