1 min read

Password WARNING: Expert’s Advice is Wrong

Password WARNING: Expert’s Advice is Wrong

This week’s news regarding password protection changed everything we thought we knew about securing our passwords.

New call-to-action

Since the early 2000’s, industry standard for generating a secure password comprised of:

  • Minimum 8 characters, both lower and upper case
  • Must include symbols
  • Must include numbers
  • Must include some ambiguous symbol (?!*&)
  • And we must change passwords every 90 days.

 

We now know this is total BS.

The problem lies in that…. If you and 10,000 other people are using the same “random” ideas, it’s not really random.

 

The guys responsible for designing safe passwords, the National Institute of Standards and Technology, recently changed their password guidelines. Their previous advice basically just spawned a generation of widely used and goofy looking passwords like “Pa$$w0rd”. And they no longer suggest to frequently change your password, mainly because in most cases only slight alterations are made. Most people would just change “Pa$$w0rd” to” Pa$$w0rd2”.

 

Password Warning

 

So what now?

Password Phrase

Longer phrases are better than complex characters

Academics who have studied passwords believe using four words in a sequence are much harder for hackers to crack than shorter medley of strange characters. For instance, it would take 550 years to crack the password phrase “correct horse battery staple,” all written as one word, while Tr0ub4dor&3 could be cracked in as little as three days.

 

More Characters, More Security

Long, easy-to-remember phrases are safer that crazy characters, and users should be forced to change passwords only if there is a sign it has been stolen, says NIST. When a site tells you that it requires lower case letters, upper case letters, numbers and symbols the Bot also knows this and so it can rule our billions of passwords that do not have at least these options. So, what do you do?

  1. Develop a password you and only you will remember. Be unique.
  2. Don’t reuse passwords for multiple sites.
  3. Make sure the password is long. 8 characters is not enough nowadays.

 

Here at Succurri we want to make sure your business is protected. Contact us today to learn about our business enhancing services. 480-795-2181.

Is Your Password Security Up to Par?

2 min read

Is Your Password Security Up to Par?

Passwords are all over the place these days, whether they’re required to access an online account, or access the devices used to open these...

Read More
BEWARE: Facebook Password Stealing Software Exists

1 min read

BEWARE: Facebook Password Stealing Software Exists

Well, isn’t karma a B? There is a new malware that is focusing itself on Facebook hackers ironically dubbed Instant Karmathat actually steals...

Read More

2 min read

Understanding How a Password is Cracked

If you were to ask us what one of the most important cybersecurity features to have is, chances are, we’d answer “secure passwords.” Sure, this...

Read More