Thu, Feb 23, 2012, 9:20 AM EST - U.S. Markets open in 10 mins.

Discover Yahoo! With Your Friends

Explore news, videos and much more based on what your friends are reading and watching. Publish your own activity and retain full control.

To get started, first

YOUR FRIENDS' ACTIVITY

    25 "Worst Passwords" of 2011 Revealed

    If you see your password below, STOP!

    Do not finish reading this post and immediately go change your password -- before you forget. You will probably make changes in several places since passwords tend to be reused for multiple accounts.

    Here are two lists, the first compiled by SplashData:

    1. password

    2. 123456

    3.12345678

    4. qwerty

    5. abc123

    6. monkey

    7. 1234567

    8. letmein

    9. trustno1

    10. dragon

    11. baseball

    12. 111111

    13. iloveyou

    14. master

    15. sunshine

    16. ashley

    17. bailey

    18. passwOrd

    19. shadow

    20. 123123

    21. 654321

    22. superman

    23. qazwsx

    24. michael

    25. football

    Last year, Imperva looked at 32 million passwords stolen from RockYou, a hacked website, and released its own Top 10 "worst" list:

    1. 123456

    2. 12345

    3. 123456789

    4. Password

    5. iloveyou

    6. princess

    7. rockyou

    8. 1234567

    9. 12345678

    10. abc123

    If you've gotten this far and don't see any of your passwords, that's good news. But, note that complex passwords combining letters and numbers, such as passw0rd (with the "o" replaced by a zero) are starting to get onto the 2011 list. abc123 is a mixed password that showed up on both lists.

    Last year, Imperva provided a list of password best practices, created by NASA to help its users protect their rocket science, they include:

    It should contain at least eight characters

    It should contain a mix of four different types of characters - upper case letters, lower case letters, numbers, and special characters such as !@#$%^&*,;" If there is only one letter or special character, it should not be either the first or last character in the password.

    It should not be a name, a slang word, or any word in the dictionary. It should not include any part of your name or your e-mail address.

    Following that advice, of course, means you'll create a password that will be impossible, unless you try a trick credited to security guru Bruce Schneir: Turn a sentence into a password.

    For example, "Now I lay me down to sleep" might become nilmDOWN2s, a 10-character password that won't be found in any dictionary.

    Can't remember that password? Schneir says it's OK to write it down and put it in your wallet, or better yet keep a hint in your wallet. Just don't also include a list of the sites and services that password works with. Try to use a different password on every service, but if you can't do that, at least develop a set of passwords that you use at different sites.

    Someday, we will use authentication schemes, perhaps biometrics, that don't require so much jumping through hoops to protect our data. But, in the meantime, passwords are all most of us have, so they ought to be strong enough to do the job.

    More from Forbes.com:

     

    4,458 comments

    • Ben  •  3 months ago
      If your password is "password" then your spare house key is definitely under the mat.
    • tom payne  •  3 months ago
      mickeyminniedonalddaisyhueylooeydeweysacramento- 7 characters and a capital...bada bing
    • sue  •  3 months ago
      OH CRAP! I'll be back!
    • hippymama27  •  3 months ago
      To everyone out there have a safe and Blessed Thanksgiving
    • American  •  3 months ago
      I use to use my dogs name spelled backwards never had a problem
    • ArmenA  •  3 months ago
      In other news, I had salmon for dinner.
    • Know the Facts, then deci ...  •  3 months ago
      How to make a foolproof password. Look up on a world atlas a country you have never been to and you have no desire to ever go to. Find a small town or mountain name for the first part of your password. Next think of an activity that you dislike and have never liked and can never imagine yourself doing. Do a search on that activity and find a seldom used word that relates to that activity. You will use both of these words as your password. Use a symbol like @, #, $, %, ^, &, *, ( or ) at the start of your password and between the words and at the end of the password. One more thing, make every other letter CAPITALIZED. Since your password is totally unrelated to you no one will be able to guess it or figure it out.
    • Anonymous  •  3 months ago
      Sometimes I like to crawl under my bed and pretend I'm a carrot
    • Ken  •  3 months ago
      my mother (85 years old) can't use my laptop because every time she puts her password in....little stars come up!
    • JoAnn  •  2 months ago
      My password didn't make it on the list either.
    • sancho  •  3 months ago
      and "000" opens most briefcases
    • AY  •  3 months ago
      back then my work password was analboss, then the computer locked and I had to call tech support then I was gone
    • Katlynn  •  2 months ago
      why would put something soooo stupid as their password
    • Dark Energy  •  3 months ago
      "1. password" "18. passw0rd" I just coppied and pasted these and realised that for some reason number 18 looks different when I coppied and pasted it then when I read it from the artical. When I read number 18 from the artical and I checked and rechecked over and over again I found that in the artical it looks like "password" even though it is "passw0rd" when I copied and pasted it into this comment.
    • Richmann  •  3 months ago
      people have way too much time on their hands....
    • Chi Guy  •  3 months ago
      "I am not giving you my code."
      "I'll bet I can guess it."
      "Yeah, right."
      "Ah, all right, yeah... Let's see... Well, we can throw out birthdays immediately. That's too obvious. And no numbers for you. You're a word man. Let's go deeper... What kind of man are you? Well, you're weak, spineless, a man of temptations. But what tempts you? You're a portly fellow. A bit long in the waistband. So what's your pleasure? Is it the salty snacks you crave? No no no no... Yours is a sweet tooth. Oh, you may stray, but you'll always return to your dark master... The cocoa bean! And only the purest syrup nectar can satisfy you. If you could, you'd guzzle it by the gallon... Ovaltine!? Hershey's!? Nestle's Quick!?"
    • Stacey  •  3 months ago
      what's the difference between # 1 and # 18?
    • WiseGirl  •  3 months ago
      my password is "ChuckNorrisProtectsAgainstAllPasswordHackers" Nodoby's broken in yet. :)
    • KristyH  •  2 months ago
      i would hate for biometrics to be the passwords of the future on my personal computer or e-mail. It seems like every time I am on a road trip, I forget something in my e-mail and I call a trusted friend or family member to log into my account and look up the information. The last time it was our hotel confirmation and the address. I blame being 5 weeks post-partum and having to leave last minute to drive 1800 miles to plan and attend my mother's funeral.
    • Ryan  •  3 months ago
      Now for the best password ever:
      ngvzd8sth40tgve-h45c904c=904uv5905u6v0eur590c-u56x.4-6x-05u9w3u.f6c0945ui6.90dcs=.c45546vc.890cu45x.dc-[55645i76
      lol its hacker proof!

    RATES

    Yahoo! Finance on Facebook

      YAHOO! FINANCE ON TWITTER

    Stay in touch with Yahoo! Finance

    [X]

    How to subscribe

    Roll over each section to subscribe using Add to My Yahoo! or RSS Feed feeds.

    Yahoo! News offers dozens of RSS feeds you can read in My Yahoo! or using third-party RSS news reader software. Click here to find out more about RSS and how you can use it with Yahoo! News.
    Loading...