Common password mistakes you’re probably making (and how to fix them)

Common password mistakes you’re probably making (and how to fix them)

That knot of anxiety you feel when you try to log into an important account? You're not alone. We all rely on a multitude of online services these

The technology helping to bring the small screen to life
How Casinos Have Incorporated Technology To Create More Entertaining Experiences
How Technology Is Changing the Game for Traditional Entertainment

That knot of anxiety you feel when you try to log into an important account? You’re not alone.

We all rely on a multitude of online services these days, from banking and shopping to social media and email. These digital doors are secured by passwords, the first line of defence against unwelcome intruders.

But are your digital keys up to scratch? You might think you’re being careful, yet subtle habits can significantly weaken your online security and be exploited by cybercriminals.

Using weak or common passwords

Choosing a password like “123456” or “password” is akin to leaving your front door wide open.

These predictable sequences and words are the first ones hackers try because, unfortunately, they frequently work. Think about it: if a cybercriminal gains access to a database of compromised accounts, they will immediately test the most common passwords.

To fix this, aim for complexity. Combine uppercase and lowercase letters, numbers, and symbols. Instead of a predictable word, consider a memorable phrase where you’ve deliberately swapped some letters for numbers or symbols – for example, “MyB1gD0gL0vesT0run!” This creates a password that’s difficult for automated systems to crack but still relatively easy for you to remember.

Reusing the same password across multiple accounts

Imagine a master key that unlocks every single door in your house. If that key falls into the wrong hands, your entire home is vulnerable. The same principle applies to using the same password for multiple online accounts.

If one website or service suffers a data breach, and your password is compromised, attackers can then try that same password on your other accounts – your email, your bank, your social media. The fallout can be significant. To avoid this domino effect, create unique, strong passwords for each of your important accounts. This might sound daunting, but a password generator can significantly simplify the process. These tools securely store your passwords, create strong new ones, and automatically fill them in when you visit a website or app.

Not enabling two-factor authentication (2FA)

Think of 2FA as adding a second lock to your digital doors. Even if someone manages to guess or steal your password, they still need a second piece of information to gain access. This usually comes in the form of a code sent by text or an authenticator app.

If someone tries to log into your email account from an unfamiliar device, even with the correct password, they will be prompted for that unique, time-sensitive code sent to your phone. This also alerts you to the attempt being made to hack your account.

Using personal information in passwords

Basing your password on easily discoverable personal details like your pet’s name, your birthdate, or your address makes it much easier for someone to guess. This information is often publicly available on social media or through other online sources. Cybercriminals can use this to their advantage, making educated guesses or using automated tools to try common personal combinations.

The less connection your password has to your personal life, the harder it will be for anyone to figure it out. This simple practice removes a significant vulnerability that attackers often exploit.

Not updating passwords regularly

While having strong, unique passwords is crucial, they aren’t a one-time fix. Data breaches happen, and even the most secure websites can be compromised.

If your password was associated with a breached service, it could be circulating on the dark web. Regularly updating your passwords, especially for critical accounts like your email and banking, mitigates this risk. Aim to update your passwords every few months, so that even if a password has been compromised in a past breach, it won’t remain a vulnerability for long.