Showing posts with label password re-use. Show all posts
Showing posts with label password re-use. Show all posts

Thursday, December 31, 2009

The Passwords Twitter doesn't want you to use


The Wundercounter blog has a list of all of the passwords embedded in Twitter's signup page. The list is a pretty broad list of bad passwords that Twitter users probably use more than we might like to hope after years of explaining the need for good passwords. Old favorites like 123456, abc123, and password show up, as does computer, many first names, and of course, twitter.

It seems like most organizations have at least one common password that users tend to gravitate to. At colleges and universities, it tends to be a school spirit oriented password, and for websites, it often involves the name of the site. What's your organization's oft joked about common password?

(flickr Creative Commons attribution licensed image courtesy 7son75)

Monday, March 16, 2009

8,000 User IDs Passwords Exposed on Scribd

The New York Times reports that as many as 8,000 usernames and passwords were exposed in what may have been a phishing attack result that was posted on Scribd. Original reports pointed to a potential Comcast connection, but Comcast has denied that idea.

What should horrify security minded readers is the quote from the gentleman, Kevin Andreyo who the article lists as an educational technology specialist in Reading, Pa., and a professor at Wilkes University who made the discovery: "That isn’t just my password for Comcast, it’s my password for everything that is not tied to my credit card".

How many of the people that you are responsible for could say the same thing?