Here Are the 25 Worst Passwords of 2017 New additions to SplashData's list of 2017's worst passwords are letmein, monkey, 123123, hello, freedom, whatever and trustno1.

By Angela Moscaritolo

This story originally appeared on PCMag

via PC Mag

It's probably safe to say that everyone on the internet knows by now that using easy-to-guess, insecure passwords like "123456" or "password" is a bad idea. But as it turns out, many still don't care.

Password management application provider SplashData on Tuesday released a list of the 100 Worst Passwords of 2017, compiled from more than 5 million passwords leaked during the year. For a fourth consecutive year, "123456" and "password" took the top two spots on the list.

The list included plenty of other usual suspects like "qwerty" (No. 4), "football" (No. 9), "iloveyou" (No. 10) and "admin" (No. 11), along with some new additions, including "starwars," which ranked as the 16th worst password of 2017.

"Unfortunately, while the newest episode may be a fantastic addition to the Star Wars franchise, 'starwars' is a dangerous password to use," SplashData CEO Morgan Slain said in a statement. "Hackers are using common terms from pop culture and sports to break into accounts online because they know many people are using those easy-to-remember words."

Other new additions to the list this year included "letmein" (No. 7), "monkey" (No. 13), "123123" (No. 17), "hello" (No. 21), "freedom" (No. 22), "whatever" (No. 23) and "trustno1" (No. 25). SplashData warned that using any of the passwords on the top 100 list "would put users at grave risk for identity theft."

The company recommends using passphrases instead of simple passwords, mirroring advice earlier this year from the National Institute of Standards and Technology. Passphrases should include at least 12 characters and a mix of characters, including upper and lower cases, SplashData recommended. Users should also be sure to set a unique password for each website, and consider using a password manager.

Without further ado, here's SplashData's list of the top 25 worst passwords of 2017. To see the full 100, click here.

1 - 123456
2 - password
3 - 12345678
4 - qwerty
5 - 12345
6 - 123456789
7 - letmein
8 - 1234567
9 - football
10 - iloveyou
11 - admin
12 - welcome
13 - monkey
14 - login
15 - abc123
16 - starwars
17 - 123123
18 - dragon
19 - passw0rd
20 - master
21 - hello
22 - freedom
23 - whatever
24 - qazwsx
25 - trustno1

Wavy Line
Angela Moscaritolo has been a PCMag reporter since January 2012. 

Editor's Pick

A Leader's Most Powerful Tool Is Executive Capital. Here's What It Is — and How to Earn It.
Lock
One Man's Casual Side Hustle Became an International Phenomenon — And It's on Track to See $15 Million in Revenue This Year
Lock
3 Reasons to Keep Posting on LinkedIn, Even If Nobody Is Engaging With You
Why a Strong Chief Financial Officer Is Crucial for Your Franchise — and What to Look for When Hiring One

Related Topics

Business News

More Americans Are Retiring Abroad, Without a Massive Nest Egg — Here's How They Made the Leap

About 450,000 people received their social security benefits outside the U.S. at the end of 2021, up from 307,000 in 2008, according to the Social Security Administration.

Business News

Woman Ties the Knot at White Castle Almost 30 Years After the Chain Gave Her Free Food as a Homeless Teen

Jamie West was just 12 years old when she ran away from the foster care system.

Business News

Lululemon Employees Say They Were Fired for Trying to Stop Shoplifters

Two Georgia women say Lululemon fired them without severance for trying to get thieves out of the store.

Business News

New York Lawyer Uses ChatGPT to Create Legal Brief, Cites 6 'Bogus' Cases: 'The Court Is Presented With an Unprecedented Circumstance'

The lawyer, who has 30 years of experience, said it was the first time he used the tool for "research" and was "unaware of the possibility that its content could be false."