Slashdot Mirror


Why People Are So Bad At Picking Passwords

mrspoonsi writes "Studies suggest red-haired women tend to choose the best passwords and men with bushy beards or unkempt hair, the worst. These studies also reveal that when it comes to passwords, women prefer length and men diversity. On the internet, the most popular colour is blue, at least when it comes to passwords. If you are wondering why, it is largely because so many popular websites and services (Facebook, Twitter and Google to name but three) use the colour in their logo. That has a subtle impact on the choices people make when signing up and picking a word or phrase to form a supposedly super-secret password. The number one conclusion from looking at that data — people are lousy at picking good passwords. 'You have to remember we are all human and we all make mistakes,' says Mr Thorsheim. In this sense, he says, a good password would be a phrase or combination of characters that has little or no connection to the person picking it. All too often, Mr Thorsheim adds, people use words or numbers intimately linked to them. They use birthdays, wedding days, the names of siblings or children or pets. They use their house number, street name or pick on a favourite pop star. This bias is most noticeable when it comes to the numbers people pick when told to choose a four digit pin. Analysis of their choices suggests that people drift towards a small subset of the 10,000 available. In some cases, up to 80% of choices come from just 100 different numbers."

14 of 299 comments (clear)

  1. Huh? by hduff · · Score: 5, Funny

    These studies also reveal that when it comes to passwords, women prefer length and men diversity.

    We are still talking about passwords, right?

    --
    "I believe in Karma. That means I can do bad things to people all day long and I assume they deserve it." : Dogbert
    1. Re:Huh? by Thanshin · · Score: 5, Funny

      Probably not.

      Studies suggest that news about studies are only vaguely related to the studies themselves.

    2. Re:Huh? by QQBoss · · Score: 5, Funny

      Is it too obvious to point out that it isn't so much the length of the password that is important, but how you use it? The luckiest, of course, are able to take advantage of both.

    3. Re:Huh? by Anonymous Coward · · Score: 4, Funny

      This is why women never use 'penis' as their password since it's never long enough.

  2. Before choosing an important password by LongearedBat · · Score: 4, Funny

    So, before choosing an important password make sure you have shaved, had a haircut and dyed your hair red.

    (A sex change is asking too much though.)

    1. Re:Before choosing an important password by emag · · Score: 5, Funny

      Especially every 90 days...

      --
      "The urge to save humanity is almost always a false front for the urge to rule." --H.L. Mencken
  3. Bad news .... by amalcolm · · Score: 3, Funny

    ... for RMS !

    --
    Time for bed, said Zebedee - boing
  4. What about red headed women with beards? by toonces33 · · Score: 3, Funny

    What is the quality of the password then?

  5. I guess I should shave. by Anonymous Coward · · Score: 0, Funny

    I am going to shave, so my passwords get better.

  6. Re:PI-N? by gazbo · · Score: 3, Funny

    All of us. We just choose a different place to start.

  7. Re:Except by bobbied · · Score: 4, Funny

    your favorite color".

    Blue... No, RED!

    --
    "File to fit, pound to insert, paint to match" - Aircraft Maintenance 101
  8. My Password solution by OzPeter · · Score: 4, Funny

    I use regexes related to the site name/function. (*)

    Now the hackers have 2 two problems when they want to break into my account!

    * I actually I do incorporate regex like strings.

    --
    I am Slashdot. Are you Slashdot as well?
  9. Re:Horse Battery Staple is common too by BobNET · · Score: 3, Funny

    Presumably the same one that designed the air shield for planet Druidia.

  10. Re:Horse Battery Staple is common too by 14erCleaner · · Score: 4, Funny

    What value is there in having a low limit on password lengths?

    When they store it in clear text on a laptop, it takes up less disk space.

    --
    Have you read my blog lately?