According to a report on Consumer Password Best Practices culled from an analysis of 32 million passwords exposed in the recent Rockyou.com Web security breach, the three most commonly used passwords among users of the Rockyou social networking site turned out to be 123456, 12345, and 123456789.Also making in into the top ten, in this order, were the following: Password, iloveyou, princess, rockyou, 1234567, 12345678, and abc123.During the Rockyou breach last month, a hacker exploited a SQL Injection vulnerability to expose 32 million passwords -- which had been stored in clear text in Rockyou's database -- and then posted the passwords, without any other identifying information, on the Web.
In analyzing the results for a report issued today, researchers at the Imperva Application Defense Center (ADC) discovered that even now, people are still relying on the same kinds of "weak" passwords detected in earlier studies of Unix passwords 20 years ago, and Hotmail passwords a decade ago.
About 30% of Rockyou users chose passwords with five or fewer characters, and almost 50% opted for "names, slang words, dictionary words or trivial passwords (consecutive digits, adjacent keyboards keys, and so on)," according to key findings of Imperva's report.
>> Source: Betanews

Help
















