Skip to main content

It’s still not a good idea to pick ‘123456’ or ‘password’ as your password

123456 remains the worlds most used and worst password
JMik/Shutterstock
The stupidest combination of digits one could ever choose to “secure” one’s access to online services of any sort is officially a two-time champion in SplashData’s dubious annual competition for the most common passwords found on the Internet.

Congrats, “123456,” for shame, anyone using it as a digital passkey. Especially in a day and age when nude celebrity pic leak scandals are beginning to feel like just another Monday morning, and mammoth corporations such as Sony can piss off dangerous hackers with a harmless Seth Rogen comedy.

True, maybe no one’s interested in checking out the unclothed physique of all you regular Joes and Janes reading us. And offending North Korea is probably not very high on your daily to-do lists. But I bet many terabytes of personal, sensitive data are hidden behind “12345,” “12345678,” or “qwerty” passwords. Not to mention financial info and the like.

So yeah, next time you sign up or log in to Paypal, your e-mail, cloud, Facebook, or Twitter, think twice before penciling in ill-advised, decidedly unsafe integer sequences like “1234567890,” “1234,” or “696969,” (which isn’t funny either). The same goes for words like “baseball,” “dragon,” “football,” “monkey,” “mustang,” “master,” “superman,” or “batman”. Come on, even a six-year-old could “hack” those with a little effort and patience.

And no, you aren’t particularly safe when “protected” by phrases such as “letmein” or “trustno1”. The reason is simple – they’re not clever.

SplashData gathered its 2014 research via more than 3.3 million leaked passwords during the last 12 months, so in all honesty, this isn’t an ultimate, 100 percent accurate list of the “world’s most used passwords.”

Just to be on the safe side, though, go ahead and change everything to strings of letters and figures as random as possible. Picking dates and names you can easily remember isn’t necessarily a bad idea, but please don’t go with your anniversary and wife’s name.

Also, tools like LastPass are around to help you store them all, so they don’t have to mean anything.

Editors' Recommendations

Adrian Diaconescu
Former Digital Trends Contributor
Adrian is a mobile aficionado since the days of the Nokia 3310, and a PC enthusiast since Windows 98. Later, he discovered…
Hackers may have stolen the master key to another password manager
keepass master password plain text vulnerability open padlock cybersecurity

The best password managers are meant to keep all your logins and credit card info safe and secure, but a major new vulnerability has just put users of the KeePass password manager at serious risk of being breached.

In fact, the exploit allows an attacker to steal a KeePass user’s master password in plain text -- in other words, in an unencrypted form -- simply by extracting it from the target computer’s memory. It’s a remarkably simple hack, yet one that could have worrying implications.

Read more
No, 1Password wasn’t hacked – here’s what really happened
A person using the 1Password password manager on a laptop while sat on a couch.

Password managers have been struggling with security breaches in recent months, with LastPass suffering a particularly bad hack as a notable example. So when 1Password users got an alert last week saying their Secret Keys and passwords had been changed without their knowledge, they were understandably panicked. Luckily, all was not what it seemed.

That’s because AgileBits, the company behind 1Password, has just explained exactly what went wrong during that event. And while it wasn’t as bad as everyone first thought, it still doesn’t paint AgileBits in a particularly good light.

Read more
AI can probably crack your password in seconds
password manager lifestyle image

We can now add easily cracking passwords in a matter of seconds to the list of things that AI can do.

Cybersecurity firm Home Security Heroes recently published a study uncovering how AI tools analyze passwords and then use that data to crack the most common passwords used on the web.

Read more