The worst passwords of 2024 prove that we still suck at digital security
3 mins read

The worst passwords of 2024 prove that we still suck at digital security

NordPass has released its sixth annual study on the 200 most common passwords in the world. Unfortunately, it seems the sixth time still isn’t the charm, with the list still topped by many of the same easy-to-crack suspects as last year.

“After analyzing 6 years of data, we can say that there hasn’t been much improvement in people’s password habits,” NordPass wrote. It’s easy to imagine a sense of resignation around that statement.

SEE ALSO: The best password managers for all your online accounts

This year NordPass study was conducted in collaboration with NordStellar and used a 2.5 TB database of information gathered from publicly available resources – including some found on the dark web. Passwords used had been revealed through malware or in data leaks, and the entire study used information from people in 44 countries.

According to NordPass research, the top 10 most used passwords globally in 2024 are:

NordPass estimates that it would take a hacker less than a second to crack each of these passwords. This is the fifth year that “123456” has topped the list, having only been beaten once since NordPass began its annual study.

The list looks a little different when looking strictly at passwords for US accounts, although there is still a lot of overlap. While the global list favors number-based passwords, presumably because they are used in different languages, 2024’s 10 most popular US passwords have more English-based entries:

Even these would take less than a second to crack.

Corporate America’s most popular password is “password”

This year, NordPass also made a separate list of passwords used for business accounts. Most of the passwords used in the study were leaked along with a corresponding email address, allowing NordPass to distinguish between work and personal accounts by looking at the domain name.

Unfortunately, it looks like the hours of mandatory corporate privacy training we’ve all endured have borne little fruit, with people still using the same or similar weak passwords as they do in their private lives.

The 10 most popular passwords people used at work in 2024 are:

Specifically in the US, 2024’s most popular corporate passwords are:

“aaron431” is an unusual outlier compared to his compatriots, with no apparent apparent rhyme or reason. However, it has been recognized as a popular password in the several industries for year. Some have speculated that “aaron431” is the default password for a widely used program, and that people simply haven’t bothered to change it. NordPass estimates that it would take a hacker about five minutes to crack it.

If you are guilty of using any of these popular passwords, now would be a good time to consider changing them and get a password manager. Even if you don’t use any of the entries on these lists, a password manager will still help you keep your passwords strong and your data safe.