Are You Using a Weak Password? Here are 2019’s Worst Passwords

      Comments Off on Are You Using a Weak Password? Here are 2019’s Worst Passwords

A weak password can bring down even the strongest of your practice’s computer security defenses. Passwords are the cornerstone of all modern computer security practices. Because of that, they are one of the most highly sought after targets for attackers. When breaches occur, attackers often post the account information they steal online or on Dark Web sites for sale. Security researchers compile these lists of accounts and find out what users have actually chosen for their passwords. The results are often very shocking and disappointing. This is why we can’t have nice things. Here are the top 200 weak passwords for 2019, as chosen by real users.

Top 200 weak passwords for 2019

Click here for the entire list
1.123452812220
2.1234562485216
3.1234567891052268
4.test1993756
5.password830846
6.12345678512560
7.zinch483443
8.g_czechout372278
9.asdf359520
10.qwerty348762
11.1234567890329341
12.1234567261610
13.Aa123456.212903
14.iloveyou171657
15.1234169683
16.abc123150977
17.111111148079
18.123123145365
19.dubsmash144104
20.test139624
21.
princess122658
22.qwertyuiop116273
23.sunshine 107202
24.BvTest123106991
25.11111104395
26.ashley94557
27.OOOOO92927
28.OOOOOO92330
29.password192009
30.monkey86404
31.livetest83677
32.5555583004
33.soccer80159
34.charlie 78914
35.asdfghjkl77360
36.65432176498
37.family 76007
38.michael71035
39.12332169727
40.football68495
41.baseball67981
42.q1w2e3r4t5y666586
43.nicole 64992
44.jessica63498
45.purple 62709
46.shadow 62592
47.hannah62394
48.chocolate 62325
49.michelle 61873
50.daniel61643
51.maggie 61445
52.qwerty12359782
53.hello59125
54.11223358745
55.jordan58698
56.tigger57167
57.66666656801
58.98765432156653
59.superman56113
60.1234567891055414
61.summer 55403
62.1q2w3e4r5t55318
63.fitness55095
64.bailey54405
65.zxcvbnm53307
66.fuckyou52997
67.12121252684
68.buster 51495
69.butterfly51413
70.dragon50640
71.jennifer50602
72.amanda50560
73.justin50294
74.cookie 49712
75.basketball49556
76.shopping 49085
77.pepper48564
78.joshua 48230
79.hunter 47430
80.ginger 47404
81.matthew47207
82.abcd123447064
83.taylor 46353
84.samantha 46353
85.whatever46339
86.andrew46083
87.1qaz2wsx3edc45643
88.thomas 45317
89.jasmine 45190
90.animoto44940
91.madison44183
92.098765432144175
93.5432143912
94.flower 43696
95.Password43430
96.maria 43177
97.babygirl43037
98.lovely 42897
99.sophie 42889
100.Chegg12342542
101.computer 42531
102.qwe12342478
103.anthony 42427
104.1q2w3e4r42242
105. peanut42143
106.bubbles42142
107.asdasd42096
108.qwert41948
109.1qaz2wsx41840
110.pakistan41798
111.123qwe41602
112.liverpool41272
113.elizabeth41268
114.harley41084
115.chelsea40499
116.familia39996
117.yellow39726
118.william39702
119.george39270
120.777777739071
121.loveme38797
122.123abc38501
123.letmein38353
124.oliver38269
125.batman37973
126.cheese37956
127banana37910
128.testing37881
129.secret37784
130.angel37764
131.friends37741
132.jackson37731
133.aaaaaa37568
134.softball37556
135.chicken37250
136.lauren37151
137.andrea36940
138.welcome36723
139.asdfgh36597
140.robert35654
141.orange35594
142.Testing135389
143.pokemon35293
144.55555535128
145.melissa35045
146.morgan34829
147.12312312334721
148.qazwsx34436
149.diamond34422
150.brandon34227
151.jesus34220
152.mickey34180
153.olivia34110
154.changeme33940
155.danielle33781
156.victoria33770
157.gabriel33679
158.123456a33562
159.0.0000000033417
160.loveyou33306
161.hockey33091
162.freedom33047
163.azerty32881
164.snoopy32792
165.skinny32682
166.myheritage32619
167.qwerty132560
168.15975332365
169.forever32115
170.iloveu32043
171.killer31879
172.joseph31852
173.master31667
174.mustang31619
175.hellokitty31458
176.school30905
177.Password130871
178.patrick30821
179.blink18230756
180.tinkerbell30739
181.rainbow30726
182.nathan30489
183.cooper30457
184.onedirection30388
185.alexander30078
186.jordan2329874
187.lol12329832
188.jasper29813
189.junior29502
190.q1w2e3r429368
191.22222229362
192.1111111129291
193.benjamin29288
194.jonathan29279
195.passw0rd29267
196.012345678929110
197.a12345629103
198.samsung29073
199.12329068
200.love12329064

How as this list made?

NordVPN, a popular virtual private networking (VPN) service, compiled this list from dozens of reported breaches in 2019. They compared all of the data from these breaches and found common passwords that many people were using. The database itself contains over 500 million passwords in total.

In the first half of 2019, more than 4 BILLION records were exposed or stolen because of data breaches. In December of this year, a security researcher found a further billion passwords that were unencrypted stored in an insecure database. This database was live on the internet.

Breaches are common and it’s usually a matter of when rather than if.

What makes a password weak or strong?

Weak passwords are those that are easy for an attacker to break. These include the passwords in the list above. All of these have the same characteristics. These include:

  • Passwords less than 8 characters long
  • Not using both upper and lower letters
  • Not using numbers
  • Using common or easily guessed passwords – if it’s in the English language, you shouldn’t be using it

Another bad habit many users have is to use the same password on many different websites or computers. The password is easy to remember so it makes using it everywhere easier. However, once a weak password is compromised, the attacker can use that password to gain access to all the accounts that the password was used on. Using a unique password for every website, account, phone, etc. is critical.

We have written an extensive page on how to create strong passwords that can be read here. However, for a quick and dirty explanation, try this method. Choose 4 or more random words together. For example:

horse carrot thermometer pipe

That password is 26 characters long. If you added a number, capitalized one of the letters, and added a special character, you would have a very strong password that is virtually impossible to break. It’s also easy to remember.

One of the best ways to ensure you always use strong passwords is with a password manager. LastPass is an example of a free password manager that is very easy to use. LastPass will generate unique passwords for each of your online accounts and make them completely random. This ensures that you aren’t using the same password over and over again. It also makes sure you are creating very strong and unbreakable passwords. LastPass stores your passwords in an encrypted database that even it can’t access.

LastPass is free and can be found here.

[DISPLAY_ULTIMATE_SOCIAL_ICONS]