The Status Line
banner
thestatusline.bsky.social
The Status Line
@thestatusline.bsky.social
A mostly-tech blog focused on informing both implementers and everyday users about cybersecurity and cybersafety. Topics focus on avoiding scams, online privacy, and cybersafety, with a sprinkling of history and personal musings.
There is. In fact, NIST's newest guidelines require verifiers to refuse commonly-used passwords. NordPass's list isn't current passwords, though, it's a historical list of the most common passwords found in breaches going back more than 15 years.
November 24, 2024 at 10:21 PM
Sort of. NordPass' study is based on a collection of passwords from breaches going back more than 15 years. Most of the passwords on that list are from old breaches. Not current ones. There's a deeper look into NordPass' list here
www.statusline.org/worst-passwo...
The Worst Passwords of 2024?
Nordpass has published their annual list of the Top 200 Worst Passwords for 2024, but does the list stand up to scrutiny? And how does their data compare to ours?
www.statusline.org
November 24, 2024 at 10:19 PM
Sort of. This is a marketing gimmick used by NordPass. It's a list of historically common passwords that includes recent breaches, but is heavily weighted towards old (10+ years old) data. Not current or even recent. I took a closer look at their list here:
www.statusline.org/worst-passwo...
The Worst Passwords of 2024? | The Status Line
Nordpass has published their annual list of the Top 200 Worst Passwords for 2024, but does the list stand up to scrutiny? And how does their data compare to ours?
www.statusline.org
November 20, 2024 at 5:52 PM