Thursday, 3 April 2025
24.9 C
Singapore
26.8 C
Thailand
20.7 C
Indonesia
27 C
Philippines

Scammers can guess 45% of passwords within one minute, a Kaspersky study reveals

Discover how Kaspersky found that 45% of 193 million passwords can be guessed in under a minute, and learn how to strengthen your passwords.

In a groundbreaking study conducted by Kaspersky, a leading cybersecurity firm, in June 2024, a staggering 45% of 193 million passwords sourced from the Dark Web were cracked within a minute. This alarming revelation underscores the urgent need for stronger password security.

Are we guessing passwords in under a minute? Really?

As you might expect from a cybersecurity report, the findings are pretty concerning. Out of the 193 million passwords analysed, Kaspersky discovered that:

  • 45% (87 million) could be cracked in less than one minute.
  • 14% (27 million) took between one minute and one hour.
  • 8% (15 million) required up to one day.
  • 6% (12 million) took up to a month.
  • 4% (8 million) needed one month to a year.

These percentages account for approximately 77% of the passwords studied. The remaining 23% (44 million) were classified as โ€œresistantโ€ by Kaspersky, meaning they would take over a year to crack using brute force or smart guessing algorithms.

Donโ€™t use the dictionary

Kaspersky’s research also revealed that 57% of the passwords contained dictionary words, significantly weakening their strength. Using common words makes your passwords more predictable and more accessible to crack.

Here are some of the most famous sequences found in the study:

  • Names: Common names such as “Ahmed,” “Nguyen,” “Kumar,” “Kevin,” and “Daniel.”
  • Famous words: words like “forever,” “love,” “google,” “hacker,” and “gamer.”
  • Standard passwords: common choices such as “password,” “qwerty12345,” “admin,” and “team.”

Kaspersky noted that only 19% of the passwords had a “strong combination” of non-dictionary words, lowercase and uppercase letters, numbers, and symbols. However, even among these, 39% could be cracked by algorithms in less than one hour.

The barrier to running password-guessing algorithms is relatively low. Kaspersky reported that attackers can handle deep technical knowledge and expensive equipment. A hacker with a powerful laptop processor can guess passwords with eight characters (lowercase letters or digits) in just seven minutes. Moreover, smart-guessing algorithms can handle common substitutions, such as replacing “a” with “@” or “1” with an exclamation mark.

How can we strengthen our passwords?

To fortify your online security, it’s crucial to follow the advice of Kaspersky and other cybersecurity experts. By implementing these measures, you can take control of your digital safety.

  • Use a password manager:ย This helps reduce the need to memorise multiple passwords. Consider reading guides on password managers to find the best one for you.
  • Unique passwords for each service: Avoid using the same password across multiple accounts to minimise the risk if one gets compromised.
  • Passphrases instead of passwords: Create long, unique phrases that are memorable to you but difficult for others to guess.
  • Test your password strength: Use secure and verified password checkers to ensure your passwords are robust.
  • Avoid personal information: Do not use birthdays, pet names, or family members’ names in your passwords.
  • Enable two-factor authentication (2FA): This adds an extra security layer, requiring another verification step after entering your password. Use 2FA wherever it is available.

Ready to take control of your digital safety? Start by implementing the tips shared in this article.

Hot this week

Google’s Gemini 2.5 Pro AI model is now available for all users

Google's Gemini 2.5 Pro AI model is now available for all users, offering advanced coding and reasoning abilities with a free trial for Gemini Advanced.

Google Pixel 9a arrives in Singapore this April for S$799

The Google Pixel 9a launches in Singapore in April 2025 with a Tensor G4 chip, 48MP camera, and seven years of updates, starting at S$799.

Apple prepares for M5 iPad Pro and MacBook Pro release

Apple is set to launch the M5 iPad Pro and MacBook Pro in late 2024, with the M6 models expected to introduce an in-house modem in 2027.

Zelle is removing its stand-alone app

Zelle is shutting down its stand-alone app, but you can still use the service through your bankโ€™s app. Hereโ€™s what you need to know.

Exabeam introduces Nova, an agentic AI that boosts cybersecurity operations

Exabeam unveils Nova, a proactive AI agent that boosts security team productivity and reduces incident investigation time by over 50%.

Qualcomm expands AI research with MovianAI acquisition

Qualcomm has acquired Vietnamese AI research firm MovianAI to boost its AI development in smartphones, PCs, and software-defined vehicles.

Roblox introduces new parental controls to enhance child safety

Roblox introduces new parental controls, allowing parents to block games, restrict friends, and monitor their childโ€™s activity for better safety.

Anthropic introduces Claude for Education, a new AI chatbot plan for universities

Anthropic launches Claude for Education, an AI chatbot plan for universities that offers advanced learning tools and administration support.

Exabeam introduces Nova, an agentic AI that boosts cybersecurity operations

Exabeam unveils Nova, a proactive AI agent that boosts security team productivity and reduces incident investigation time by over 50%.

Related Articles