{"id":83058,"date":"2017-04-02T22:46:48","date_gmt":"2017-04-03T02:46:48","guid":{"rendered":"http:\/\/rbach.net\/blog\/index.php\/"},"modified":"2021-11-28T16:09:58","modified_gmt":"2021-11-28T21:09:58","slug":"300-billion-passwords","status":"publish","type":"post","link":"https:\/\/rbach.net\/index.php\/300-billion-passwords\/","title":{"rendered":"300 Billion Passwords"},"content":{"rendered":"<p><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignleft wp-image-92062\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/password-sticker-1-1.jpg?resize=115%2C106&#038;ssl=1\" alt=\"Passwords\" width=\"115\" height=\"106\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/password-sticker-1-1.jpg?resize=150%2C138&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/password-sticker-1-1.jpg?resize=75%2C69&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/password-sticker-1-1.jpg?w=305&amp;ssl=1 305w\" sizes=\"auto, (max-width: 115px) 100vw, 115px\" \/>The death of the password has been predicted for years. <a href=\"https:\/\/twitter.com\/BillGates\" target=\"_blank\" rel=\"noopener noreferrer\">Bill Gates<\/a> predicted the<a href=\"https:\/\/www.cnet.com\/news\/gates-predicts-death-of-the-password\/\" target=\"_blank\" rel=\"noopener noreferrer\"> death of the password<\/a> at an <a href=\"https:\/\/web.archive.org\/web\/20210708042410\/https:\/\/www.rsaconference.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">RSA Security conference<\/a> in 2004. In 2011,\u00a0<a title=\"IBM\" href=\"http:\/\/www.ibm.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">IBM<\/a> (<a title=\"NYSE : IBM\" href=\"https:\/\/www.tradingview.com\/symbols\/NYSE-IBM\/\" target=\"_blank\" rel=\"noopener noreferrer\">IBM<\/a>) predicted that biometrics would <a href=\"http:\/\/latimesblogs.latimes.com\/technology\/2011\/12\/ibm-predicts-a-future-with-no-passwords-mind-reading-smartphones.html\" target=\"_blank\" rel=\"noopener noreferrer\">replace<\/a>\u00a0passwords by 2016. In case you haven\u2019t noticed in 2017 and passwords are still with us and they <a href=\"https:\/\/wp.me\/p2wgaW-lj0\" target=\"_blank\" rel=\"noopener noreferrer\">suck<\/a>. &#8220;<em>It&#8217;s now years after those statements were made, and passwords are still in heavy use,<\/em>&#8221; Joseph Carson, head of global strategic alliances at <a href=\"https:\/\/thycotic.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">Thycotic Software<\/a>\u00a0<a href=\"https:\/\/web.archive.org\/web\/20170717120216\/http:\/\/www.csoonline.com\/article\/3163147\/security-awareness\/report-passwords-not-going-away-any-time-soon.html\" target=\"_blank\" rel=\"noopener noreferrer\">told<\/a> <em><a href=\"http:\/\/www.csoonline.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">CSO<\/a><\/em>.<\/p>\n<p><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-92064 alignright\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/password-1-1.jpg?resize=150%2C75&#038;ssl=1\" alt=\"Password\" width=\"150\" height=\"75\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/password-1-1.jpg?resize=150%2C75&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/password-1-1.jpg?resize=75%2C38&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/password-1-1.jpg?w=400&amp;ssl=1 400w\" sizes=\"auto, (max-width: 150px) 100vw, 150px\" \/>A <a href=\"https:\/\/web.archive.org\/web\/20190611050121\/https:\/\/thycotic.com\/wp-content\/uploads\/2013\/03\/Cybersecurity-Ventures-Thycotic_Password-Protection.pdf\" target=\"_blank\" rel=\"noopener noreferrer\">new report<\/a>\u00a0(<em>Reg. Req.<\/em>) from cyber-security research firm <a href=\"http:\/\/cybersecurityventures.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">Cybersecurity Ventures<\/a> says that the number of <strong>passwords<\/strong> in use will grow from about <strong>75 billion today<\/strong> to around <strong>100 billion in 2020<\/strong>. AND the number of passwords used by machines, such as IoT devices, will grow even faster, from around 15 billion in 2015 to around 200 billion in 2020, the report said. That is <strong>300 billion passwords by 2020<\/strong>.<\/p>\n<p>And these numbers don&#8217;t include one-time passwords, SSL encryption keys, and other short-term credentials said Thycotic&#8217;s Carson. <strong>Thycotic Software<\/strong> sponsored the report.<\/p>\n<p>Mr. Carson told CSO the estimates come from worldwide statistics about the total number of computers, operating systems, servers, routers, and other technologies and applications that come with passwords or need users to create passwords to use them.\u00a0he added,\u00a0&#8220;<em>Then there are the <strong>social media accounts<\/strong><\/em><em>, which have been growing significantly<\/em>.&#8221;<\/p>\n<p><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"alignright size-medium wp-image-92067\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/exploding-head-syndrome-6-4.jpg?resize=150%2C136&#038;ssl=1\" alt=\"\" width=\"150\" height=\"136\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/exploding-head-syndrome-6-4.jpg?resize=150%2C136&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/exploding-head-syndrome-6-4.jpg?resize=75%2C68&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/exploding-head-syndrome-6-4.jpg?resize=768%2C696&amp;ssl=1 768w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/exploding-head-syndrome-6-4.jpg?w=1000&amp;ssl=1 1000w\" sizes=\"auto, (max-width: 150px) 100vw, 150px\" \/>The <strong>average user has over 25 passwords<\/strong>, he said. There&#8217;s no decline in the number of passwords, in fact, the opposite is the case.\u00a0&#8220;<em>We find that the growth is accelerating at a massive pace,<\/em>&#8221;\u00a0<em>CSO<\/em> observed that the use &#8212; and reuse &#8212; of all these passwords is creating an ever-growing attack surface of both human and machine-to-machine passwords. <strong>A record number of credential breaches were <\/strong><strong>disclosed in 2016<\/strong>, Mr. Carson added &#8212;<strong> 3 billion<\/strong>, with 43% of people having had at least one password or credential stolen.<\/p>\n<p>A <a href=\"http:\/\/www.pewinternet.org\/2017\/01\/26\/americans-and-cybersecurity\/\" target=\"_blank\" rel=\"noopener noreferrer\">report<\/a> released by the <a href=\"http:\/\/www.pewinternet.org\/\" target=\"_blank\" rel=\"noopener noreferrer\">Pew Research Center<\/a> said that for U.S. adults, the number was even higher. According to a 2016 survey, <strong>64%<\/strong> said that they had personally noticed or been notified of a <strong>data breach<\/strong> that affected their accounts or personal data.<\/p>\n<p><a href=\"https:\/\/web.archive.org\/web\/20230329074440\/https:\/\/www.churchmilitant.com\/news\/article\/money-bags\"><img data-recalc-dims=\"1\" loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-92070 alignright\" src=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/2015_-_09_-_25_-_eli-3-1.jpg?resize=150%2C100&#038;ssl=1\" alt=\"Money\" width=\"150\" height=\"100\" srcset=\"https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/2015_-_09_-_25_-_eli-3-1.jpg?resize=150%2C100&amp;ssl=1 150w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/2015_-_09_-_25_-_eli-3-1.jpg?resize=75%2C50&amp;ssl=1 75w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/2015_-_09_-_25_-_eli-3-1.jpg?resize=768%2C512&amp;ssl=1 768w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/2015_-_09_-_25_-_eli-3-1.jpg?w=1024&amp;ssl=1 1024w, https:\/\/i0.wp.com\/rbach.net\/wp-content\/uploads\/2017\/04\/2015_-_09_-_25_-_eli-3-1.jpg?w=960&amp;ssl=1 960w\" sizes=\"auto, (max-width: 150px) 100vw, 150px\" \/><\/a>According to Mr. Carson, the financial damages of the breaches will continue to increase as well. Thycotic and Cybersecurity Ventures predicts potential <strong>damages from cyber-crime to reach<\/strong> <strong>$6 trillion by 2021<\/strong>.<\/p>\n<p><em><strong>rb-<\/strong><\/em><\/p>\n<p><em>Looks like passwords are here to stay. Followers of the <a href=\"https:\/\/rbach.net\/\" target=\"_blank\" rel=\"noopener noreferrer\">Bach Seat<\/a> know that passwords suck. I have covered a number of options to <a href=\"https:\/\/wp.me\/p2wgaW-jME\" target=\"_blank\" rel=\"noopener\">replace<\/a> <a href=\"https:\/\/wp.me\/p2wgaW-kOm\" target=\"_blank\" rel=\"noopener\">passwords<\/a>. None of the biometric options have taken off as IBM had predicted.<\/em><\/p>\n<p><em>Where biometric authentication is deployed, it&#8217;s been as an adjunct to passwords, not a replacement. Passwords are used to set up the initial trusted relationship, and as a fallback when the biometrics fail. Mr. Carson concludes, &#8220;The biometrics are used for ease of access to systems &#8230; Biometrics will never replace passwords.&#8221;<\/em><\/p>\n<p><strong>Related articles<\/strong><\/p>\n<ul>\n<li><a href=\"http:\/\/www.latimes.com\/business\/la-fi-airline-biometrics-20170601-story.html\" target=\"_blank\" rel=\"noopener noreferrer\"> JetBlue and Delta begin testing biometrics to identify passengers<\/a> (<a href=\"http:\/\/www.latimes.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">The Los Angles Times<\/a>)<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p><em><a title=\"Ralph Bach\" href=\"https:\/\/rbach.net\/index.php\/new-resume\/\" target=\"_blank\" rel=\"noopener noreferrer\">Ralph Bach<\/a>\u00a0has been in IT long enough to know better and has blogged from his\u00a0<a title=\"Bach Seat\" href=\"https:\/\/rbach.net\/\" target=\"_blank\" rel=\"noopener noreferrer\">Bach Seat<\/a> about IT, careers, and anything else that catches his attention since 2005. You can follow him on <a class=\"broken_link\" href=\"http:\/\/www.linkedin.com\/in\/rb48334\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">LinkedIn<\/a>,\u00a0<a href=\"https:\/\/www.facebook.com\/ralph.bach.14\" target=\"_blank\" rel=\"noopener noreferrer\">Facebook<\/a>,\u00a0and\u00a0<a href=\"https:\/\/twitter.com\/rbach48334\" target=\"_blank\" rel=\"noopener noreferrer\">Twitter<\/a>. Email the Bach Seat\u00a0<a href=\"mailto:\/\/bach.seat@gmail.com\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a>.<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>WWW users in the US have 25+ passwords there will be 300 billion passwords by 2020<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[2990,1080,1452,2881,125,944,2541,4,564,305,2880],"class_list":["post-83058","post","type-post","status-publish","format-standard","hentry","category-security","tag-2990","tag-bill-gates","tag-biometrics","tag-cybersecurity-ventures","tag-data-breach","tag-iot","tag-passwords","tag-security","tag-social-media","tag-ssl","tag-thycotic"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/83058","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/comments?post=83058"}],"version-history":[{"count":10,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/83058\/revisions"}],"predecessor-version":[{"id":131070,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/posts\/83058\/revisions\/131070"}],"wp:attachment":[{"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/media?parent=83058"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/categories?post=83058"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rbach.net\/index.php\/wp-json\/wp\/v2\/tags?post=83058"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}