On the occasion of World Passworld Day, McAfee has just published a research declraring that 90% of passwords are vulnerable to attack. "123456" and "password" are the most popular passwords among users. 2014
With attacks becoming more sophisticated and more security breaches occurring, Nowadays it is more important than ever to educate consumers on the importance of using strong passwords to protect their personal information.
We usually make these mistakes when choosing our passwords:
Recycling. This is one of the most common mistakes. Instead of using strong passwords, we prefer to use the same password for several accounts.
Leaving them written down and visible. It may be that we use strong passwords. But what good is it if we write them down and leave them on our desk for everyone to see?
Use hobbies. It may seem silly, but choosing names of clothing brands, your favourite football team or musical artists you like doesn't help much when it comes to passwords either.
Never use generic words like "password, 123456, same as username".
Never use personal information such as birthdays or anniversaries, car number plates, pet names, addresses or anything that can be investigated.
Replacing letters with numbers is no longer helpful in obvious words. For example, use "P455w0rd" instead of "Password", as it will take password-cracking programs just as long to guess it.
Do not share passwords. Try not to write them down, either on paper or digitally.
And as far as possible, avoid using the "remember password" option in browsers.
One of the most commonly used methods is to use phrases that we know well to create a password. These can range from song verses, to famous quotes, to phrases from films or series, to personal habits.
For example, in my case I like to order my hamburger with cheese and mustard, no onion and medium. If we take this data we could create the following password: "HcQyMsCyTM". For added security we can add two digits that are not easy to guess or relate to us, such as the model year of our first car. Then it would look something like "HcQyMsCyTM$01".
The passphrase-password method using Diceware
Nowadays one of the most secure methods is to choose at least four random words and without connection between them, consenquently creating a meaningless phrase.
Create a text document, name it Practice3.FirstNameandLastName where we will answer and paste the screenshots of the following exercises:
Exercise1. Time to crack a password.
Open the website https://howsecureismypassword.net/ and check how long takes a computer program to crack the following passwords. Create a table in the document with the password and the time it takes to crack them.
Password
contraseña
12345
12345678
111111
000000
12345678
password
mierda
olvidastetucontraseña
iloveyou
a123456
Severo20
123123
We evaluate what we have learnt about internet risks. Play a game to find out the internet risks of the site https://cyberscouts.osi.es/ in the two modalities.
Paste the screenshot of the score obtained in each one, in the document.