USING upper and lower cases along with numbers in your passwords is “daft”, spy chiefs have revealed.

Instead, the best passwords simply use three random words.

It is far better to concoct passwords made up of three random words than use more complex variations

1

It is far better to concoct passwords made up of three random words than use more complex variationsCredit: Alamy

The National Cyber Security Centre (NCSC), part of Government Communications Headquarters (GCHQ), highlighted its “three random words” recommendation in a new blog post.

It said a key reason for using the system is it creates passwords that are easy to remember yet strong enough to keep online accounts secure from cyber criminals, owing to their unusual combination of letters.

By contrast, more complex passwords can be ineffective because they can be more guessable for criminals and the software they build to detect them, the advice says.

The agency says cyber criminals target predictable methods supposed to make passwords more complex – like substituting the letter o with a zero, or the number one with an exclamation mark.

Criminals allow for such patterns in their hacking software, which negates any desired added security from such passwords.

“Counter-intuitively, the enforcement of these complexity requirements results in the creation of more predictable passwords,” the agency said.

By contrast, passwords constructed from three random words tended to be longer and harder to predict, and used letter combinations which were more difficult for hacking algorithms to detect.

The blog post concedes the three random words approach was not 100% safe since people might use predictable word combinations, but said a major advantage of the system was its usability “because security that’s not usable doesn’t work”.

The guidance comes as cyber crime has soared during the pandemic, with online fraud rising 70% in the last year, according to data from the Office for National Statistics.

How can your make you account as secure as possible?

  1. Use three random words
  2. Use long words
  3. Use complicated words with odd letter combinations
  4. Don’t substitute o with 0
  5. Use words that are easier to remember

“Traditional password advice telling us to remember multiple complex passwords is simply daft,” NCSC technical director Dr Ian Levy says on the centre’s website.

“There are several good reasons why we decided on the three random words approach – not least because they create passwords which are both strong and easier to remember.

“By following this advice, people will be much less vulnerable to cyber criminals and I’d encourage people to think about the passwords they use on their important accounts, and consider a password manager.”

New Google Chrome feature could stop you being hacked in SECONDS

This post first appeared on Thesun.co.uk

Leave a Reply

Your email address will not be published. Required fields are marked *

You May Also Like

See your Facebook 2021 highlights with new ‘Year in Review’ feature

META has started rolling out a “Year in Review” feature on Facebook,…

Citizen Scientists Show Light Pollution Erases Stars From the Sky

Years ago, Christopher Kyba was skeptical about astronomy data collected by citizen…

SpaceX is set to launch its Starship SN10 rocket TODAY for its first high altitude test of six miles

SpaceX is set to launched its Starship Serial Number 10 (SN10) for…

Most-anticipated game of 2024 has shocked fans as it’s suddenly dropped on Steam without warning

SHADOW drops have been all the rage lately as games are released…