'123456' Named 2014's Worst Password of the Year

Despite the multitude of password management apps that are available, like 1Password and LastPass, many people continue to use easily guessable words and number strings to protect their sensitive information.

One of the most popular passwords in 2014, for example, was "123456," according to a list of leaked 2014 passwords gathered by SplashData (via Re/code). The second most used password was "password," followed by "12345," "12345678," and "qwerty." Both "123456" and "password" have also been popular in past years, ranking as the top two most commonly used passwords in 2013.

Similar number strings were the sixth and seventh most popular 2014 passwords, followed by the words "baseball," "football," and "dragon."

worstpasswordsof2014

"Passwords based on simple patterns on your keyboard remain popular despite how weak they are," said Morgan Slain, CEO of SplashData. "Any password using numbers alone should be avoided, especially sequences. As more websites require stronger passwords or combinations of letters and numbers, longer keyboard patterns are becoming common passwords, and they are still not secure."

To get its list of the worst passwords in 2014, its fourth annual year of collecting password data, SplashData looked at more than 3.3 million passwords that were leaked across 2014. Passwords came primarily from users in North America and Western Europe.

Based on the data that it gathered, SplashData recommends against using keyboard sequences like "1qaz2wsx" or "qwertyuiop," and it advises users not to use a favorite sport. Baseball and football made the top 10 list of most common passwords, while hockey, soccer, and golfer were in the top 100. Team-based passwords like Yankees, Eagles, Steelers, Rangers, and Lakers also made the top 100 list.

Birthdays and birth years are also not recommended, nor are names, with common monikers like Michael, Jennifer, Thomas, and Jordan listed within the top 50 most commonly used passwords. Swear words, phrases, hobbies, athletes, car brands, and film names were also heavily featured in SplashData's top 100 list.

Using a password management app like SplashID, 1Password, or LastPass is highly recommended, to generate random passwords that are used for a single site and that are more secure than self-generated words, numbers, and phrases.

Widely publicized data leaks across 2013 and 2014 seem to have spurred more people to choose stronger passwords, as the top 25 passwords represented just 2.2 percent of passwords exposed. Along with the well-known iCloud breach, many companies including Home Depot, Target, and Staples saw major data leaks.

Popular Stories

New Things Your iPhone Can Do in iOS 18

18 New Things Your iPhone Can Do in iOS 18.2

Wednesday November 13, 2024 2:09 am PST by
Apple is set to release iOS 18.2 next month, bringing the second round of Apple Intelligence features to iPhone 15 Pro and iPhone 16 models. This update brings several major advancements to Apple's AI integration, including completely new image generation tools and a range of Visual Intelligence-based enhancements. There are a handful of new non-AI related feature controls incoming as well....
airtag purple

New AirTag Rumored to Launch in Mid-2025 With These Features

Sunday November 17, 2024 5:18 am PST by
Apple released the AirTag in April 2021, so it is now three over and a half years old. While the AirTag has not received any hardware updates since then, a new version of the item tracking accessory is rumored to be in development. Below, we recap rumors about a second-generation AirTag. Timing Apple is aiming to release a new AirTag in mid-2025, according to Bloomberg's Mark Gurman....
M4 MacBook Pros Thumb

M4 MacBook Pro Uses Quantum Dot Display Technology

Thursday November 14, 2024 4:19 pm PST by
The M4 MacBook Pro models feature quantum dot display technology, according to display analyst Ross Young. Apple used a quantum dot film instead of a red KSF phosphor film, a change that provides more vibrant, accurate color results. Young says that Apple has opted for KSF for prior MacBook Pro models because it doesn't use toxic element cadmium (typical for quantum dot) and is more...
iCloud General Feature

Apple Acknowledges iCloud Notes Disappearing and Explains How to Fix

Saturday November 16, 2024 9:45 am PST by
Earlier this month, we reported about some iPhone users temporarily losing all of their notes in the Notes app after accepting Apple's updated iCloud terms and conditions. Apple has now indirectly acknowledged this issue in a new support document that outlines steps to follow if your iCloud notes are not appearing on your iPhone, iPad, or Vision Pro. Fortunately, the notes can be re-synced...
iPhone XS Max Black Background

Apple Adds iPhone XS Max and More to Vintage/Obsolete Product Lists

Friday November 15, 2024 8:09 am PST by
Apple today added a few older iPhone and Apple Watch models to the vintage and obsolete products list on its website. Apple has now classified the iPhone 6s Plus and iPhone XS Max as "vintage" worldwide. Apple considers a device to be "vintage" once five years have passed since the company stopped distributing it for sale. Apple and Apple Authorized Service Providers sometimes offer repairs...

Top Rated Comments

biggest father1 Avatar
128 months ago
Crap!!

This article just posted every single one of my passwords!
Score: 39 Votes (Like | Disagree)
farewelwilliams Avatar
128 months ago
totally related to Apple/Mac somehow.
Score: 18 Votes (Like | Disagree)
stiligFox Avatar
128 months ago
Damn, now I need to change the combination on my luggage!
Score: 17 Votes (Like | Disagree)
Shadow Runner Avatar
128 months ago
I see 1234567 isn't on there... my new password!
Score: 13 Votes (Like | Disagree)
Big-TDI-Guy Avatar
128 months ago
The combination is 1...2...3...4...5?

That's the kind of thing an idiot would have on his luggage!

Edit: stiligfox's Schwartz is slightly bigger than mine...
Score: 13 Votes (Like | Disagree)
ptb42 Avatar
128 months ago

Here are some examples of 3, 4, and 5 word phrases to give you an idea.
(In this variant, I put dashes between words and capitalize the first letter -- these are mainly to satisfy common password restrictions and don't change the strength of the password a lot.
XKCD: Password Strength (http://xkcd.com/936/)



It has been implemented here: https://xkpasswd.net/ (https://xkpasswd.net/)
Score: 9 Votes (Like | Disagree)