{"id":120771,"date":"2021-11-29T17:52:44","date_gmt":"2021-11-29T22:52:44","guid":{"rendered":"https:\/\/rbach.net\/?p=120771"},"modified":"2022-12-03T15:17:39","modified_gmt":"2022-12-03T20:17:39","slug":"passwords-that-wont-keep-you-safe","status":"publish","type":"post","link":"https:\/\/rbach.net\/index.php\/passwords-that-wont-keep-you-safe\/","title":{"rendered":"Passwords That Won&#8217;t Keep You Safe"},"content":{"rendered":"<p><a href=\"https:\/\/hothardware.com\/news\/elcomsofts-internet-password-breakers-scares-the-crap-out-of-us\" target=\"_blank\" rel=\"noopener\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignleft wp-image-111876\" title=\"These Passwords Won't Keep You Safe Online\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/Password_Dog-8.jpg?resize=110%2C93&#038;ssl=1\" alt=\"These Passwords Won't Keep You Safe Online\" width=\"110\" height=\"93\" \/><\/a>I could not let <strong>2021<\/strong> wrap up without the annual look at the OMG WTF are they thinking <strong>worst passwords list<\/strong>. I have been covering the sorry-state of passwords <a href=\"https:\/\/wp.me\/p2wgaW-uw\" target=\"_blank\" rel=\"noopener\">since 2010<\/a> and unfortunately little has changed. The biggest change has come in the increased number of <a href=\"https:\/\/gizmodo.com\/the-biggest-hacks-of-2021-so-far-1847157024\" target=\"_blank\" rel=\"nofollow noopener\">mega-breaches<\/a> leaking passwords all over the Intertubes.<\/p>\r\n<p><a href=\"https:\/\/nordpass.com\/\" target=\"_blank\" rel=\"noopener\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-116325\" title=\"Nordpass logo\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/logo_nordpass.png?resize=100%2C91&#038;ssl=1\" alt=\"Nordpass logo\" width=\"100\" height=\"91\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/logo_nordpass.png?resize=150%2C137&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/logo_nordpass.png?resize=75%2C68&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/logo_nordpass.png?w=256&amp;ssl=1 256w\" sizes=\"auto, (max-width: 100px) 100vw, 100px\" \/><\/a>Here is <a href=\"https:\/\/nordpass.com\/\" target=\"_blank\" rel=\"nofollow noopener\">NordPass&#8217;s<\/a> 2021 list. Nordpass and independent cybersecurity researchers evaluated a database with <strong>4 terabytes&#8217; worth of data<\/strong>. You can <a href=\"https:\/\/nordpass.com\/most-common-passwords-list\/\" target=\"_blank\" rel=\"noopener\">visit the NordPass website<\/a> to see all 200 of the entries from 2021. But here are the top 25 most common passwords:<\/p>\r\n<p style=\"text-align: center;\"><h2 id=\"tablepress-82-name\" class=\"tablepress-table-name tablepress-table-name-id-82\">2021's Worst Passwords<\/h2>\n<span id=\"tablepress-82-description\" class=\"tablepress-table-description tablepress-table-description-id-82\">2021's 25 worst passwords compiled by Nordpass.<\/span>\n\n<table id=\"tablepress-82\" class=\"tablepress tablepress-id-82\" aria-labelledby=\"tablepress-82-name\" aria-describedby=\"tablepress-82-description\">\n<thead>\n<tr class=\"row-1\">\n\t<th class=\"column-1\">Rank<\/th><th class=\"column-2\">Password<\/th><th class=\"column-3\">Change from 2020<\/th>\n<\/tr>\n<\/thead>\n<tbody class=\"row-striping row-hover\">\n<tr class=\"row-2\">\n\t<td class=\"column-1\">1<\/td><td class=\"column-2\">123456<\/td><td class=\"column-3\">-<\/td>\n<\/tr>\n<tr class=\"row-3\">\n\t<td class=\"column-1\">2<\/td><td class=\"column-2\">123456789<\/td><td class=\"column-3\">-<\/td>\n<\/tr>\n<tr class=\"row-4\">\n\t<td class=\"column-1\">3<\/td><td class=\"column-2\">12345<\/td><td class=\"column-3\">+5<\/td>\n<\/tr>\n<tr class=\"row-5\">\n\t<td class=\"column-1\">4<\/td><td class=\"column-2\">qwerty<\/td><td class=\"column-3\">+8<\/td>\n<\/tr>\n<tr class=\"row-6\">\n\t<td class=\"column-1\">5<\/td><td class=\"column-2\">password<\/td><td class=\"column-3\">(1)<\/td>\n<\/tr>\n<tr class=\"row-7\">\n\t<td class=\"column-1\">6<\/td><td class=\"column-2\">12345678<\/td><td class=\"column-3\">-+1<\/td>\n<\/tr>\n<tr class=\"row-8\">\n\t<td class=\"column-1\">7<\/td><td class=\"column-2\">111111<\/td><td class=\"column-3\">(2)<\/td>\n<\/tr>\n<tr class=\"row-9\">\n\t<td class=\"column-1\">8<\/td><td class=\"column-2\">123123<\/td><td class=\"column-3\">(2)<\/td>\n<\/tr>\n<tr class=\"row-10\">\n\t<td class=\"column-1\">9<\/td><td class=\"column-2\">1234567890<\/td><td class=\"column-3\">(1)<\/td>\n<\/tr>\n<tr class=\"row-11\">\n\t<td class=\"column-1\">10<\/td><td class=\"column-2\">1234567<\/td><td class=\"column-3\">+1<\/td>\n<\/tr>\n<tr class=\"row-12\">\n\t<td class=\"column-1\">11<\/td><td class=\"column-2\">qwerty123<\/td><td class=\"column-3\">New<\/td>\n<\/tr>\n<tr class=\"row-13\">\n\t<td class=\"column-1\">12<\/td><td class=\"column-2\">000000<\/td><td class=\"column-3\">+3<\/td>\n<\/tr>\n<tr class=\"row-14\">\n\t<td class=\"column-1\">13<\/td><td class=\"column-2\">1q2w3e<\/td><td class=\"column-3\">New<\/td>\n<\/tr>\n<tr class=\"row-15\">\n\t<td class=\"column-1\">14<\/td><td class=\"column-2\">aa12345678<\/td><td class=\"column-3\">New<\/td>\n<\/tr>\n<tr class=\"row-16\">\n\t<td class=\"column-1\">15<\/td><td class=\"column-2\">abc123<\/td><td class=\"column-3\">(2)<\/td>\n<\/tr>\n<tr class=\"row-17\">\n\t<td class=\"column-1\">16<\/td><td class=\"column-2\">password1<\/td><td class=\"column-3\">+3<\/td>\n<\/tr>\n<tr class=\"row-18\">\n\t<td class=\"column-1\">17<\/td><td class=\"column-2\">1234<\/td><td class=\"column-3\">(1)<\/td>\n<\/tr>\n<tr class=\"row-19\">\n\t<td class=\"column-1\">18<\/td><td class=\"column-2\">qwertyuiop<\/td><td class=\"column-3\">+6<\/td>\n<\/tr>\n<tr class=\"row-20\">\n\t<td class=\"column-1\">19<\/td><td class=\"column-2\">123321<\/td><td class=\"column-3\">+4<\/td>\n<\/tr>\n<tr class=\"row-21\">\n\t<td class=\"column-1\">20<\/td><td class=\"column-2\">password123<\/td><td class=\"column-3\">New<\/td>\n<\/tr>\n<tr class=\"row-22\">\n\t<td class=\"column-1\">21<\/td><td class=\"column-2\">1q2w3e4r5t<\/td><td class=\"column-3\">New<\/td>\n<\/tr>\n<tr class=\"row-23\">\n\t<td class=\"column-1\">22<\/td><td class=\"column-2\">iloveyou<\/td><td class=\"column-3\">(5)<\/td>\n<\/tr>\n<tr class=\"row-24\">\n\t<td class=\"column-1\">23<\/td><td class=\"column-2\">654321<\/td><td class=\"column-3\">+1<\/td>\n<\/tr>\n<tr class=\"row-25\">\n\t<td class=\"column-1\">24<\/td><td class=\"column-2\">666666<\/td><td class=\"column-3\">New<\/td>\n<\/tr>\n<tr class=\"row-26\">\n\t<td class=\"column-1\">25<\/td><td class=\"column-2\">987654321<\/td><td class=\"column-3\">New<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<!-- #tablepress-82 from cache --><\/p>\r\n<h3>Bad password factoids<\/h3>\r\n<ul>\r\n<li>The top 25 bad passwords can be <strong>cracked in less than 1 second<\/strong> by a bot (or person) according to Nordpass.<\/li>\r\n<li><a href=\"https:\/\/lenspeaks.blogspot.com\/2015\/08\/the-sunday-memory-drawer-summer-games.html\" target=\"_blank\" rel=\"noopener\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-115905\" title=\"different types of passwords\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/Password-3.jpg?resize=120%2C60&#038;ssl=1\" alt=\"different types of passwords\" width=\"120\" height=\"60\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/Password-3.jpg?resize=150%2C75&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/Password-3.jpg?resize=75%2C38&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/Password-3.jpg?w=700&amp;ssl=1 700w\" sizes=\"auto, (max-width: 120px) 100vw, 120px\" \/><\/a>94% of the most frequent passwords &#8211; can be cracked in <strong>less than 10 seconds<\/strong>.\u00a0<\/li>\r\n<li>The most secure password &#8220;myspace1&#8221; ranked #54 on the list. It was used by 1,619,027 users and can be <strong>cracked in 3 hours<\/strong>.<\/li>\r\n<li>The most popular sport on the list is &#8220;<strong>football<\/strong>.&#8221; It ranked #60 and was used by 1,468,381 users.<\/li>\r\n<li>&#8220;<strong>Superman<\/strong>&#8221; protected 1,180,436 accounts. He ranked 81st but could be cracked in less than 1 second.<\/li>\r\n<li>The most popular movie on the list was &#8220;<strong>starwars<\/strong>.&#8221; 701,474 users tried to use the Force to protect their accounts. Unfortunately the Force is not strong with this one, it could be cracked in less than 1 second.<\/li>\r\n<\/ul>\r\n<h3>Password risk index<\/h3>\r\n<p>The NordPass researchers also devised a <strong>risk index<\/strong> based on the number of passwords leaked in each country <a href=\"https:\/\/www.investopedia.com\/terms\/p\/percapita.asp\" target=\"_blank\" rel=\"nofollow noopener\">per capita<\/a>.\u00a0<strong>Russia<\/strong> came in first with an astounding <strong>19.9 passwords leaked per capita<\/strong>. Other counties that leaked the most passwords are:<\/p>\r\n<ul>\r\n<li>The Czech Republic 6.2,<\/li>\r\n<li>France 6.0,<\/li>\r\n<li>Germany 5.8,<\/li>\r\n<li>U.S. 5.2,<\/li>\r\n<li>Italy 4.4,<\/li>\r\n<li>Canada 3.6,<\/li>\r\n<li>Australia3.3<\/li>\r\n<li>and Poland 3.6.<\/li>\r\n<\/ul>\r\n<p><strong><em>rb-<\/em><\/strong><\/p>\r\n<p><em>You can test the strength of your password by visiting <a class=\"body-link\" href=\"https:\/\/www.security.org\/how-secure-is-my-password\/\" target=\"_blank\" rel=\"nofollow noopener\" data-vars-ga-outbound-link=\"https:\/\/howsecureismypassword.net\/\">this site<\/a> and typing it in. They claim the site isn&#8217;t creating a repository of passwords because your information is never sent over an internet connection. The best part? As you type, the software tells you approximately how long it would take a computer to figure out your password. The site turns red if your password is weak but slowly turns green as you make it stronger. It&#8217;ll even give you tips on how to improve your password security.<\/em><\/p>\r\n<p>&nbsp;<\/p>\r\n<p style=\"text-align: center;\"><em><strong><a href=\"https:\/\/web.archive.org\/web\/20240728154520\/https:\/\/www.cdc.gov\/coronavirus\/2019-ncov\/prevent-getting-sick\/prevention.html?CDC_AA_refVal=https%3A%2F%2Fwww.cdc.gov%2Fcoronavirus%2F2019-ncov%2Fprepare%2Fprevention.html\" target=\"_blank\" rel=\"noopener noreferrer\">Stay safe out there!<\/a><\/strong><\/em><\/p>\r\n<p><strong>Related article<\/strong><\/p>\r\n<ul>\r\n<li><a title=\"The Password Turns 60 This Year, But It's Not Going Away Anytime Soon\" href=\"https:\/\/www.infosecurity-magazine.com\/opinions\/password-turns-60-this-year\/\" target=\"_blank\" rel=\"nofollow noopener\">The Password Turns 60 This Year, But It&#8217;s Not Going Away Anytime Soon<\/a>\u00a0(<a title=\"Infosecurity Magazine\" href=\"https:\/\/www.infosecurity-magazine.com\/\" target=\"_blank\" rel=\"nofollow noopener\">Infosecurity Magazine<\/a>)<\/li>\r\n<\/ul>\r\n<p>&nbsp;<\/p>\r\n<p><em><a title=\"Ralph Bach\" href=\"https:\/\/rbach.net\/index.php\/new-resume\/\" target=\"_blank\" rel=\"noopener noreferrer\">Ralph Bach<\/a>\u00a0has been in IT long enough to know better and has blogged from his\u00a0<a title=\"Bach Seat\" href=\"https:\/\/rbach.net\/\" target=\"_blank\" rel=\"noopener noreferrer\">Bach Seat<\/a>\u00a0about IT, careers, and anything else that catches his attention since 2005. You can follow him on\u00a0<a class=\"broken_link\" href=\"http:\/\/www.linkedin.com\/in\/rb48334\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">LinkedIn<\/a>,\u00a0<a href=\"https:\/\/www.facebook.com\/ralph.bach.14\" target=\"_blank\" rel=\"noopener noreferrer\">Facebook<\/a>,\u00a0and\u00a0<a href=\"https:\/\/twitter.com\/rbach48334\" target=\"_blank\" rel=\"noopener noreferrer\">Twitter<\/a>. Email the Bach Seat\u00a0<a href=\"mailto:\/\/bach.seat@gmail.com\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a>.<\/em><\/p>\r\n","protected":false},"excerpt":{"rendered":"<p>The worst passwords of 2021 have been revealed by NorpPass. Most of the works 200 passwords can be cracked by a bot or hacker in less than 10 seconds.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[3558,3538,2541,4,1645,2260],"class_list":["post-120771","post","type-post","status-publish","format-standard","hentry","category-security","tag-3558","tag-nordpass","tag-passwords","tag-security","tag-star-wars","tag-superman"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/120771","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/comments?post=120771"}],"version-history":[{"count":22,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/120771\/revisions"}],"predecessor-version":[{"id":131928,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/120771\/revisions\/131928"}],"wp:attachment":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/media?parent=120771"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/categories?post=120771"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/tags?post=120771"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}